Crypto-agile encryption and Communication Governance ship as one policy in software, on the network enterprises already run, a month before federal post-quantum filings come due
Aviatrix announced Harvest and Decrypt Protection, the first post-quantum protection that encrypts and simultaneously governs what a compromised workload can reach. It delivers post-quantum encryption and Communication Governance as one policy on the same enforcement point, in software. Aviatrix Harvest Protection comes with five free policies to start, with no trial clock and no purchase required. It arrives a month before federal civilian agencies must file post-quantum migration plans on October 22[1], and well before the major cloud providers reach the same point. Google[2] and Microsoft[3] have both published roadmaps for full quantum readiness in 2029. Amazon Web Services publishes no equivalent target, directing customers to regulatory deadlines instead.[4] The Aviatrix Cloud Native Security Fabric is quantum-safe.
Most post-quantum solutions address the algorithm and stop there. Adversaries intercept encrypted data across cloud backbones, cloud-to-cloud, edge-to-cloud, and inside the cloud, then stockpile it for the day quantum computers can read it. They also harvest valuable data through ungoverned egress paths, which requires no quantum computer. Aviatrix’s new crypto-agile encryption makes captured traffic unreadable to a future quantum computer, and its Communication Governance, including egress governance, closes the paths data leaves through today. With these new offerings, the Aviatrix Cloud Native Security Fabric delivers quantum-safe key exchange on the paths it encrypts.
“A post-quantum program is usually measured by how much traffic it encrypts. The better metric is measuring how much traffic is exposed to capture in the first place. It’s critical to close the open paths that don’t need to be open so that this traffic can’t be recorded today and read years from now. Closing those paths solves the harvest problem as much as the algorithm does, so the two of them belong in one program rather than two,” said Scott Raynovich, Founder and Chief Analyst at Futuriom Research.
Aviatrix crypto-agile encryption and Communication Governance technologies run on the network enterprises already operate, under keys the enterprise controls rather than keys a cloud provider holds. The solutions are designed to require no network redesign, hardware refresh, or application changes.
Also Read: CIO Influence Interview with John Elliott, Cybersecurity Author Fellow at Pluralsight
“Post-quantum readiness is an architecture problem. Encryption protects data in motion, but most enterprise cloud environments place no constraint on what a compromised workload can reach, exposing valuable data for harvest,” said Doug Merritt, Chief Executive Officer of Aviatrix. “Chokepoint Security cannot close that gap, because a chokepoint governs only the traffic that routes through it, and the paths that carry data out of a cloud estate frequently do not. Containment closes it at the workload, on every path available to it. Further complicating the situation, a cloud provider can be compliant while its customer is not, because provider migration covers the provider’s own services under the provider’s keys, not the customer’s estate.”
Containment is the architectural enforcement of explicit communication policy at every workload, governing what it can reach and what can reach it, at the granularity of workload identity and protocol, on every available path, independent of whether a compromise has been detected.
Q-Day, the day a quantum computer can break today’s key exchange, is unknown. Most published estimates place it between 2030 and 2035[5]. Data retention mandates fall within the probable Q-Day window: five to seven years for customer records, ten for financial records, twenty to thirty for health records.
Aviatrix is working with global systems integrators and security services providers to make Harvest and Decrypt Protection available to customers. It is also collaborating with Microsoft on the Quantum Safe program as the network traffic and Harvest Now, Decrypt Later containment solution, complementing quantum-safe partners in certificate management and device posture.
Catch more CIO Insights: How Are CIOs Aligning Technology with Workforce Agility?
[To share your insights with us, please write to psen@itechseries.com ]

