PQC Migration Management

Cryptographically relevant quantum computers (CRQC) are able to break today’s prevalent classic cryptography which uses algorithms like RSA or elliptic curve cryptography (ECC). Protocols which are based on these algorithms become insecure, if CRQC are available. Although nobody knows exactly when or if CRQC become available, organizations (and the society) have to plan on using so called post-quantum cryptography (PQC). Algorithms used in PQC are supposed to be secure against CRQC. In this thesis a process for migrating from classic cryptography to PQC is described. To do this, a fictional company, which provides numerous services on the internet, is designed. Based on this company, its internal processes, its customers and partners, a concept management process is developed. In the end, the management process can be used to migrate small businesses to using PQC.

Last modified November 15, 2021