Quantum is coming

July 2026 Infrastructure, Information Security


Wessel Pieterse

The global cybersecurity landscape is approaching a turning point as quantum computing accelerates faster than most organisations realise. According to Wessel Pieterse, cybersecurity lead at Accelera Digital Group (ADG), the shift is not a distant, theoretical concern, but a present-day business risk that demands immediate action.

“Quantum computing does not need to exist at scale to be a threat. Adversaries are already stealing encrypted data today with the intention of decrypting it later. Businesses with long-life data such as the financial services industry, telcos, government, healthcare, education and similar sectors are exposed right now, not in 10 years’ time,” says Pieterse.

This emerging tactic, known as ‘harvest now, decrypt later’, is driving a global push toward quantum-resistant security. Major technology leaders, including Google and Microsoft, have already begun large-scale migrations to post-quantum cryptography (PQC).

Google Cloud, for example, has rolled out quantum-safe protections across internal systems and recently announced quantum-safe key encapsulation mechanisms in Cloud KMS, signalling the urgency of preparing for a post-quantum world.

Transition to PQC takes years

Pieterse states that South African organisations cannot afford to wait for global deadlines to catch up. “The transition to PQC takes years. If businesses only start when quantum computers arrive, they will already be too late; their data would already have been harvested.”

The top three things businesses need to know:

1. The threat is immediate, not decades away. While large-scale quantum computers capable of breaking today’s encryption may still be years out, the threat has already materialised. Attackers are actively collecting encrypted data with long-term value, such as health records, financial contracts, intellectual property, and government information, knowing they will be able to decrypt it once quantum capabilities mature. Any organisation holding data that must remain confidential for a decade or more is already at risk.

2. Modern public-key encryption will be broken: Most digital trust today relies on RSA (Rivest-Shamir-Adleman) and ECC (Elliptic Curve Cryptography), the two primary asymmetric cryptographic algorithms used to secure internet traffic, digital signatures and data transmission. These are algorithms that quantum computers will be able to break in minutes using techniques such as Shor’s Algorithm. Once that happens, everything from secure web traffic to VPNs, digital signatures, and identity systems becomes vulnerable.

3. The solutions already exist and are standardised: In 2024, the US National Institute of Standards and Technology (NIST) finalised the first three PQC standards, providing a clear, software-deployable path for organisations to migrate to quantum-resistant cryptography. These include ML-KEM for key establishment and ML-DSA and SLH-DSA for digital signatures. Businesses do not need to wait for new technology to be invented. The standards are here, and the migration roadmaps are here.

Why businesses must act now

The transition to PQC is complex because encryption is deeply embedded across every layer of enterprise infrastructure, from APIs and databases to IoT devices, firmware and third-party software-as-a-service (SaaS) platforms. Most organisations do not even know where all their cryptographic dependencies sit.

“Cryptography is everywhere, but visibility is nowhere. You cannot protect what you cannot see. That is why the first step is understanding your cryptographic footprint,” Pieterse says.

He adds that the migration challenge extends beyond internal systems. “Even if you update your own environment, you are still exposed if your vendors and partners have not migrated. Supply chain readiness is just as important as internal readiness.”

Three immediate priorities

Pieterse says organisations beginning their quantum-readiness journey should focus on three immediate priorities:

1. Inventory cryptographic assets: Identify where RSA, ECC, TLS, VPNs, certificates, and embedded cryptographic libraries are used. This forms the foundation of any migration plan.

2. Prioritise long-life data and build cryptographic agility: Focus first on data that must remain confidential for years or decades. Build systems that can rotate keys, replace algorithms, and adapt quickly as standards evolve.

3. Begin testing and phased migration to PQC: Start validating PQC algorithms in controlled environments and coordinate with vendors to ensure the entire supply chain is aligned with NIST’s transition timelines.

“Quantum-safe security is not a switch you flip. It is a multi-year transformation. The organisations that start now will be the ones that stay secure. Those who wait will find themselves exposed at the exact moment quantum computing becomes real,” Pieterse concludes.

Find out more at www.adg.io




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Sophos establishes South African legal entity to strengthen local operations
News & Events Information Security
Global cybersecurity company, Sophos, has announced the formation of its local legal entity, which will support local invoicing, partner enablement, compliance requirements and expanded regional investment.

Read more...
From drone market growth to application-level commercialisation
IoT & Automation Infrastructure
After years of pilot projects and technology validation, the question for the market is shifting from whether drones can fly safely and collect data, to where they can deliver repeatable operational value at scale.

Read more...
AI-enabled NVR for Milestone XProtect
Surveillance Infrastructure Products & Solutions
As surveillance environments continue to grow in scale and complexity, organisations need infrastructure that is easy to deploy, simple to manage, and ready for AI-driven workloads.

Read more...
71% of organisations suffered an identity breach
News & Events Information Security
The State of Identity Security 2026 report from Sophos finds human error and poor non-human identity management are the root causes of most attacks, as agentic AI accelerates the risk.

Read more...
Industry perspective on industrial cybersecurity
Technews Publishing News & Events Infrastructure Industrial (Industry)
The Industrial Security Harmonization Group has released a joint industry perspective highlighting a critical truth in industrial cybersecurity: secure communication is not determined by protocols alone, but by how they are deployed and managed in real-world environments.

Read more...
Cyber resilience is the real defence
Security Services & Risk Management Information Security Infrastructure
Cyber resilience has evolved into a form of strategic agility, ensuring that when an interruption occurs, the business does not just survive; it snaps back into place before the market even notices a pause.

Read more...
Employees are SA’s biggest cyber threat
Security Services & Risk Management Information Security
South Africa experienced a 46% increase in insider cyber risk in 2026, surpassing the global average of 44%. What is more, 63% of South African companies surveyed expect insider-driven data losses to increase.

Read more...
Power, performance and profit
Power Management Infrastructure
Electricity remains the single largest operating cost for most data centres. In many African markets, power infrastructure is ageing or inconsistent, forcing operators to rely on backup generation to keep facilities online.

Read more...
Surge in AI-enabled cybercrime and a 389% increase in ransomware
News & Events Information Security
Cybercrime no longer functions as a series of isolated campaigns; it operates as a system, with malicious hackers operating across an end-to-end life cycle and compressing the attack life cycle with shadow agents.

Read more...
Five signs your storage is holding you back
Infrastructure Surveillance
In the drive for business growth, organisations across South Africa are investing heavily in talent, applications, and strategy. Yet the foundational technology that underpins every digital interaction - data storage - is often overlooked.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.