Prioritising post-quantum cryptography migration activities in financial services


As post-quantum cryptography (PQC) becomes integrated into mainstream information technology (IT) products and services, financial services institutions must begin to execute their transition strategies.

This document provides actionable guidelines to incorporate quantum safety into existing risk management frameworks by assessing the ‘Migration Priority’ based on the ‘Quantum Risk’ and ‘Migration Time’ of business use cases and highlighting opportunities for immediate execution. A critical first step is to inventory all business use cases that rely on public key cryptography.

Read more…
Source: Europol


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • The modern bank heist is already under way

    September 11, 2026

    The image of the bank robber is hopelessly outdated. Today’s heist does not begin with a getaway car outside a branch. It begins quietly, with an adversary establishing persistence inside a financial institution’s network and studying how the organisation responds, says Tom Kellermann, VP of AI Security and Threat Research at Trend AI. The objective is no longer ...

  • G7 tells businesses to get ready for quantum cybersecurity threats

    September 7, 2026

    The G7, a collection of some of the world’s most powerful economies, is urging organizations to adopt quantum-resistant encryption as soon as possible and minimize the risk of losing sensitive data to technologically advanced threat actors. Virtually every industry in the world today relies on encryption (the process of converting readable data into scrambled, unreadable data ...

  • New Instagram and Facebook rules set a default two-hour limit for teens

    August 27, 2026

    Meta decided that discretion was the better part of valor on Wednesday, agreeing to settle a landmark child safety case for up to $17 billion. The agreement would introduce a default two-hour daily limit for teens on Instagram and Facebook, overnight restrictions, and a range of other protections. It also brings the trial to an early end before ...

  • Wetherspoons bars smart glasses from filming customers

    August 10, 2026

    Wetherspoons has stopped short of banning Meta-style smart glasses from its pubs, but told The Register that customers should switch off their cameras and refrain from filming. “Like many hospitality companies, Wetherspoon has CCTV cameras for security reasons, but their use is strictly controlled by data legislation,” a spokesperson said. “Apart from that, the general code that applies in ...

  • Japanese electricity giant apologises after physical drive with data of 10.9 million clients goes missing

    June 12, 2026

    A Japanese energy giant has apologised after losing a physical storage drive containing the data on millions of its clients. Workers for Kyushu Electric Power Co. apparently mislaid the drive, which had been left in an unlocked cabinet, the company explained in an official announcement. The drive allegedly contained information on up to 10.9 million accounts, including customer ...

  • The Strategic Importance of Digital Sovereignty in 2026

    May 18, 2026

    Digital sovereignty has become a priority as concerns over data privacy, data protection, and geopolitical risk intensify. The concept centres on giving data owners full control over their digital assets, infrastructure, and the legal frameworks governing them. While Europe leads demand for sovereign solutions, interest is rising globally as cyberthreats and geopolitical tensions grow. In 2026, ...