HomeLatest NewsInterviewsQuantum threat makes encryption a board-level issue, DigiCert’s Deepika Chauhan says

Quantum threat makes encryption a board-level issue, DigiCert’s Deepika Chauhan says

Post-quantum cryptography is becoming an urgent priority as shrinking certificate lifecycles and long migration timelines raise security and resilience risks, according to DigiCert chief product officer Deepika Chauhan.

Preferred Source of Google

Quantum computing is forcing organisations to rethink the foundations of digital , with existing encryption methods expected to become obsolete far faster than many companies anticipate, according to DigiCert chief product officer Deepika Chauhan.

Chauhan said the industry has been working on post-quantum cryptography for nearly a decade, warning that once quantum computers mature, they will be capable of breaking today’s cryptographic in minutes.

“When that happens, everything encrypted today effectively becomes plain text,” she told Techobserver.in. “That makes this core to what we do.”

Advertisement
Saksham Bharat 2026
Saksham Bharat 2026
A multi-stakeholder dialogue on skilling gap in Cybersecurity, Data Resilience and AI — and the roadmap to a Saksham Bharat.
Register Now →
VeeamON 2026 Tour India - Mumbai
VeeamON 2026 Tour India - Mumbai
A VeeamON 2026 India Leadership Series Mumbai for senior public sector and government technology leaders.
Register Now →
Cyber Surakshit Uttar Pradesh
Cyber Surakshit Uttar Pradesh
Find out strategies, frameworks and solutions for building a resilient and secure digital ecosystem across Uttar Pradesh.
Register Now →
VeeamON 2026 Tour India - Bengaluru
VeeamON 2026 Tour India - Bengaluru
A VeeamON 2026 India Leadership Series Bengaluru for senior public sector and government technology leaders.
Register Now →
VeeamON 2026 Tour India - Delhi
VeeamON 2026 Tour India - Delhi
A VeeamON 2026 India Leadership Series Delhi for senior public sector and government technology leaders.
Register Now →
Infosec Reimagined
Infosec Reimagined
Infosec Reimagined 2026 is the premier information security summit where top leaders—CISOs, CROs, CIOs, CTOs and risk executives—converge to redefine cyber resilience.
Register Now →
Digital Senate
Digital Senate
Digital Senate is a premier conference uniting government leaders, technologists and innovators to share ideas, success stories and strategies on digital governance, public sector transformation, cybersecurity and emerging technologies in India.
Register Now →
CIO Prism
CIO Prism
CIO Prism unites forward-thinking technology leaders to exchange transformative insights, shape digital strategies, and foster innovation, empowering enterprises to excel in an era of rapid technological change.
Register Now →

DigiCert has worked closely with National Institute of Standards and and other standards bodies to develop and approve quantum-safe algorithms. Those algorithms are already supported on the DigiCert ONE platform, she said.

The company enabled support for working versions of post-quantum algorithms even before standards were formally finalised, allowing customers to experiment in sandbox environments and understand the operational impact early.

But Chauhan said preparing for quantum computing goes beyond product capability. DigiCert has launched quantum readiness initiatives that bring together customers and partners, including large consulting firms such as Deloitte, to discuss how organisations should prepare.

Advertisement

“It is evangelism as much as technology,” she said.

Adoption varies sharply by sector. Globally, banks are among the most advanced, driven by regulatory scrutiny and the long-term sensitivity of data. For many institutions, quantum risk is already a board-level issue.

Other organisations remain inclined to wait until quantum computers become commercially viable, an approach Chauhan said could leave them exposed.

Advertisement

She pointed to the industry-wide transition from SHA-1 to SHA-2 encryption standards, which took nearly a decade to complete, as a warning of how long cryptographic change can take once it begins.

“The problem is that when quantum arrives, it will already be too late to start,” she said.

The first step to quantum readiness, Chauhan said, is understanding cryptographic assets. Organisations need clear inventory and discovery of certificates, keys and algorithms before they can build a realistic migration roadmap. Regulation, she added, may help accelerate progress by nudging organisations to act sooner.

Resilience is becoming as critical as security. Certificate management failures increasingly result in service outages, not just security incidents. Public TLS certificates are currently valid for one year, but validity periods are shrinking rapidly.

“What used to be an annual task will soon need to be done multiple times a year,” Chauhan said. “That leaves no option but automation.”

She acknowledged that full automation is unrealistic for most large organisations, particularly those with legacy infrastructure. Instead, risk reduction comes from layered controls, including visibility, ownership, alerts and partial automation.

“PKI modernisation is a journey,” she said.

Hybrid IT environments add further complexity. Many organisations operate across on-premise data centres and cloud platforms, often under strict data residency and regulatory constraints.

While public certificate authorities cannot be deployed on-premise under global standards, Chauhan said private certificate authorities can be run within customer environments, with DigiCert ONE managing them from the cloud. That hybrid approach, she said, addresses both security and compliance concerns.

As quantum computing advances, Chauhan said cryptography can no longer be treated as a purely technical issue.

“This is about long-term trust,” she said. “And organisations need to start preparing now.”

Get the day's headlines from Tech Observer straight in your inbox

By subscribing you agree to our Privacy Policy, T&C and consent to receive newsletters and other important communications.
Mohd Ujaley
Mohd Ujaley
Mohd Ujaley is a journalist specialising in the intersection of technology with government, public sector, defence and large enterprises. As Editorial Director at Tech Observer Magazine, he leads editorial strategy, moderates industry discussions and engages with key stakeholders to shape conversations around technology, policy and digital transformation. With over 15 years of experience, Ujaley has held editorial roles at prestigious publications including The Economic Times, ETGovernment, Indian Express Group, Financial Express, Express Computer and CRN India. He holds a Bachelor’s degree in Business Economics, a Master’s in Mass Communication from Guru Gobind Singh Indraprastha University (GGSIPU), a Parliamentary Fellowship from The Institute of Constitutional and Parliamentary Studies and a Certificate in Public Policy from St. Stephen’s College, Delhi.
- Advertisement -
Powered By Veeam Logo
- Advertisement -

Subscribe to our Newsletter

By subscribing you agree to our Privacy Policy, T&C and consent to receive newsletters and other important communications.
- Advertisement -

India to Lead Global IT Security Standards Body for Two Years

India will chair the Common Criteria Development Board from April 2026, gaining influence over international IT security certification standards recognised by 38 countries.

RELATED ARTICLES