Episode 67

Quantum Computing and Cybersecurity – Examining Trends and Implications

The fast-evolving quantum computing phenomenon represents a paradigm shift in how computers process data. Due to its ability to process vast amounts of data and solve complex problems at an unprecedented speed, quantum computing holds great promise for new material discovery through the simulation of physical systems, portfolio optimization in finance, and more. It also poses a significant threat to cybersecurity, requiring a change in how we encrypt our data. Even though quantum computers don’t technically have the power to break most of the current forms of encryption yet, we need to stay ahead of the threat and come up with quantum-proof solutions now. If we wait until those powerful quantum computers start breaking our encryption, it will be too late. I had the pleasure of discussing the quantum computing phenomenon and its cybersecurity implications with Duncan Jones, Head of Cybersecurity, at Quantinuum. We discussed the potential threats and opportunities of quantum computing for cybersecurity, as well as its potential to revolutionize various industries. We recognized the need for new algorithms resistant to quantum computing, staying ahead of technological innovations, investing in cybersecurity measures, and prioritizing the migration of sensitive data to quantum-resistant algorithms.

Action Items

  1. Assess organizational risk exposure from quantum computing threats like "store now decrypt later" attacks.
  2. Prioritize migration of sensitive long-term data to quantum-safe encryption.
  3. Speak to vendors about their roadmaps for quantum-safe migration.
  4. Explore available quantum random number generators and other quantum cybersecurity technologies through pilot programs and starter kits.
  5. Choose credible service providers who are partnering with reputed organizations and prove their claims.
  6. Raise awareness of quantum computing implications among leadership and get buy-in for piloting relevant quantum cybersecurity technologies.

Time Stamps

00:02 -- Introduction

01:59 -- Guest's Professional Highlights

06:19 -- Overview of Quantum Computing

08:19 -- Commercially Leveraging Quantum Computing

10:51 -- Evolution of Quantum Computing and Cyber Attacks

12:55 -- Recommendations on Leveraging Quantum Computing Benefits and Securing Data from Quantum Computing Enabled Cyber Attacks

17:49 -- Roadmap for Proactive Safeguards

23:34 -- Can quantum computing enabled encryption ensure that even if a human is a victim of a phishing attack, it will be hard to get into systems? Is that a fair aspiration?

26:38 -- What recommendations would you make for organizations who are trying to explore and adopt quantum computing?

29:19 -- Cybersecurity Challenges and Hurdles

32:52 -- Challenges of Quantum-Safe Migration

34:09 -- Cryptographic debt

37:32 -- Final Thoughts

Memorable Duncan Jones Quotes/Statements

"I think of my career as a series of very fortunate accidents, rather than some very carefully planned out thing."

"Quantum computing as a different form of computation, as opposed to necessarily always a better form of computation."

"Leading companies are now starting to engage with quantum computing because they know they have to build the skill sets, they have to develop the intellectual property that will begin to deliver value in the not too distant future."

"Quantum computers are becoming more and more powerful every year."

"We'll actually see Quantum as a as a big benefit for cybersecurity, but we've got some headaches to get through first."

"Every cryptographic system is going to need to change to move to these new algorithms that are believed to be quantum resistant."

"Store-now-decrypt-later approach represents the idea that you have some persistent threat actors, people who really, really genuinely want to get some of the data that you have, and they're willing to patiently wait more than 10 years, potentially, to crack into something that they've stolen from you."

"I think it's all about focusing on a defense in depth approach. And making sure every layer in your system is as secure as possible. And where quantum can actually provide some really strong benefits is in those lower layers."

"It basically boils down to generating unpredictable random data."

"With quantum technology, you can take some risks off the table, but just not all risks."

"What I'm discovering is that organizations don't always know what they have."

"Quantum is a really good thing for cybersecurity, it's a wonderful excuse to make our systems better. It's a wonderful excuse to get rid of the cryptographic debt that has been piling up for a few years. And then by embracing the technology itself and weaving it into our everyday systems, we're actually going to make them stronger than they were before. So I would say quantum is a gift for cybersecurity."

Connect with Host Dr. Dave Chatterjee and Subscribe to the Podcast

Please subscribe to the podcast, so you don't miss any new episodes! And please leave the show a rating if you like what you hear. New episodes release every two weeks.

Connect with Dr. Chatterjee on these platforms:

LinkedIn: https://www.linkedin.com/in/dchatte/

Website: https://dchatte.com/

Cybersecurity Readiness Book: https://www.amazon.com/Cybersecurity-Readiness-Holistic-High-Performance-Approach/dp/1071837338


Latest Publications:

Published in USA Today — “Dave Chatterjee Drops the Cybersecurity Jargon, Encouraging Proactiveness Rather than Reactiveness,” April 8, 2024

Preventing Security Breaches Must Start at the Top

Mission Critical --How the American Cancer Society successfully and securely migrated to the cloud amid the pandemic

Latest Webinars & Podcasts with Dr. Chatterjee as the Guest

Non-profits and Cybersecurity, a CAPTRUST podcast

How can brands rethink data security to maintain customer trust?, A TELUS International podcast

Cybersecurity Readiness In the Age of Generative AI and LLM,” Let’s Talk About (Secur) IT Webinar, with Phillip de Souza

Insights for 2023, Cybersecurity Readiness with Dr. Dave Chatterjee, a HALO Security Webinar

About the Podcast

Show artwork for The Cybersecurity Readiness Podcast Series
The Cybersecurity Readiness Podcast Series
with Dr. Dave Chatterjee

About your host

Profile picture for Dave Chatterjee

Dave Chatterjee

Dr. Debabroto 'Dave' Chatterjee is tenured professor in the Management Information Systems (MIS) department, at the Terry College of Business, The University of Georgia (UGA). He is also a Visiting Scholar at Duke University, affiliated with the Master of Engineering in Cybersecurity program in the Pratt School of Engineering. An accomplished scholar and technology thought leader, Dr. Chatterjee’s interest and expertise lie in the various facets of information technology management – from technology sense-making to implementation and change management, data governance, internal controls, information security, and performance measurement. His work has been accepted and published in prestigious outlets such as The Wall Street Journal, MIT Sloan Management Review, California Management Review, Business Horizons, MIS Quarterly, and Journal of Management Information Systems. Dr. Chatterjee’s research has been sponsored by industry and cited over two thousand times. His book Cybersecurity Readiness: A Holistic and High-Performance Approach was published by SAGE Publishing in March 2021.