NIST finalized FIPS 203, 204 & 205 — the migration clock has started

The post-quantum security platform

Discover vulnerable cryptography, measure quantum risk, and build your migration roadmap before quantum becomes your problem.

app.velarquantum.com/overview
68/ 100 risk

Velar Quantum Risk Score

23

Crit

61

High

148

Medi

212

Low

Risk score — trailing 12 months

4.3M+

crypto assets inventoried

2035

NIST disallows RSA & ECC

< 1 hr

to first risk score

38%

avg. risk reduction in 6 mo

Trusted by teams protecting regulated data

NORDVIK BANKHALCYON HEALTHTETRARCH CAPITALMERIDIAN DEFENSELATTICE PAYOSIRIS CLOUDVANGUARD REKESTREL SYSTEMSARCLIGHT ENERGYNORTHBRIDGE INSURANCENORDVIK BANKHALCYON HEALTHTETRARCH CAPITALMERIDIAN DEFENSELATTICE PAYOSIRIS CLOUDVANGUARD REKESTREL SYSTEMSARCLIGHT ENERGYNORTHBRIDGE INSURANCE

0+

organizations onboarded

0+

domains under continuous scan

0K+

findings auto-prioritized

0M

certificates tracked

Your encrypted data is already being stolen.

Shor's algorithm will break RSA, ECC and Diffie-Hellman — the cryptography securing nearly every TLS session, VPN, signature and key exchange today. Adversaries don't need to wait: they harvest encrypted data now and decrypt it later.

Mosca's inequality

X
How long data must stay secret
Y
Time to migrate to PQC
Z
Time until a quantum computer

Harvest-now-decrypt-later timeline

  1. Today

    Adversary intercepts TLS traffic, VPN tunnels and backups protected by RSA/ECC.

  2. 2026 – 2030

    Ciphertext stored at scale. Your data's confidentiality horizon still running.

  3. 2030

    NIST deprecates RSA-2048 and ECC P-256 for federal use.

  4. Q-Day

    Cryptographically relevant quantum computer decrypts the archive.

  5. 2035

    Classical public-key crypto disallowed. Unmigrated systems are non-compliant.

The migration clock started the day the standards landed.

NIST finalized ML-KEM, ML-DSA and SLH-DSA in 2024. IR 8547 deprecates RSA and ECC by 2030 and disallows them by 2035. A global estate takes five to ten years to migrate — which means the work required to hit the deadline should already be underway.

  • Regulators are moving

    DORA, PCI DSS 4.0 and CNSA 2.0 all put cryptographic agility on the audit agenda.

  • Boards are asking

    Quantum risk is becoming a standing item in board and examiner conversations.

  • Vendors lag behind

    Your dependencies refresh their cryptography far slower than your own roadmap.

2030

RSA & ECC deprecated

2035

RSA & ECC disallowed

5–10 yr

typical migration

< 1 hr

to your first score

Abstract visualization of a cryptographic lattice

Every asset Velar scans is scored against the NIST migration timeline — so urgency is measured, not guessed.

From unknown exposure to verified post-quantum, in six steps.

01

Discover

Agentless and agent-based discovery of keys, certificates, protocols and libraries.

02

Assess

Score each asset by algorithm strength, data shelf-life and exposure.

03

Prioritize

Rank harvest-now-decrypt-later risk by business impact.

04

Migrate

Prescriptive PQC actions: ML-KEM, ML-DSA, SLH-DSA, hybrid TLS.

05

Verify

Validate handshakes, fallbacks and downgrade resistance.

06

Monitor

Continuous drift detection and CI policy gates.

Spreadsheets and point scanners were built for a problem you no longer have.

Capability
Complete crypto inventory across cloud, code and network
Harvest-now-decrypt-later exposure per data class
Single 0–100 executive risk score
Prescribed PQC fixes mapped to NIST standards
Continuous drift monitoring and CI policy gates
Vendor and third-party quantum readiness

Velar correlates live findings across your entire estate — not snapshots from a single vantage point.

Every finding, prioritized. Every fix, prescribed.

Risk findings

RSA-2048 key exchange protecting 7-year retention archive

→ Re-wrap data keys with ML-KEM-768 (FIPS 203) via KMS hybrid key wrapping; rotate within 30 days.

Critical

SWIFT connector uses RSA-2048 TLS without PFS

→ Enable TLS 1.3 with X25519MLKEM768 hybrid; coordinate with SWIFT Alliance Gateway upgrade.

Critical

Corporate VPN negotiates classic DH Group 14

→ Upgrade IKEv2 to RFC 9370 multiple key exchanges with ML-KEM; disable Group 14.

Critical

Payments API signs tokens with ECDSA P-256

→ Plan dual-signing with ML-DSA-65 (FIPS 204); introduce crypto-agile JWS header negotiation.

Critical

Public API terminates TLS with RSA-2048 certificate

→ Move edge termination to hybrid PQ TLS; issue ECDSA P-384 interim cert, ML-DSA when CA supports.

Critical

Algorithm distribution

  • RSA-20481,842
  • ECDSA P-2561,206
  • RSA-4096512
  • ECDH X25519438
  • ML-KEM hybrid96
  • Other214

Open findings by week

Built for the security teams who have to get this right.

Cryptographic inventory

A live CBOM of every RSA, ECC, DH and symmetric primitive across cloud, code and network.

Velar Quantum Risk Score

A single 0–100 metric executives understand, broken down by business unit and asset class.

HNDL exposure analysis

Mosca-model scoring that weighs data shelf-life against migration time and threat horizon.

Certificate intelligence

Track expiry, key strength and PQC-readiness for every certificate and CA chain.

Vendor quantum risk

Assess third-party PQC readiness and track vendor migration commitments.

Executive reporting

Board-ready PDF reports, compliance mappings and historical risk tracking.

Plugs into the stack you already run.

Velar reads the cryptographic truth already sitting in your cloud, code and network. No rip and replace, no agent sprawl.

AWS KMS
Azure Key Vault
Google Cloud KMS
Kubernetes
GitHub
GitLab
HashiCorp Vault
CT Logs
CycloneDX SBOM
ServiceNow
Jira
Splunk
CrowdStrike
Okta
Quantum computing hardware and cryptographic circuitry

External scan plus cloud and code ingestion across four business units. Pilot to production in 90 days.

From first scan to board-approved plan in 90 days.

A global bank pointed Velar at four business units and had a defensible, board-ready migration plan within a quarter — without deploying agents to a single production host.

2.1M

crypto assets mapped

340

RSA-2048 endpoints found

68 → 42

risk score in one quarter

Explore the live demo

Security leaders don't gamble on timelines.

“Velar gave our board a risk number they finally understood — and a migration plan with owners and dates attached.”
Elena Vasquez

Elena Vasquez

Group CISO, Nordvik Bank

“We found 340 TLS endpoints still on RSA-2048 that our existing scanners never surfaced. That finding alone paid for the program.”
Marcus Oyelaran

Marcus Oyelaran

Director of Security Engineering, Osiris Cloud

“The harvest-now-decrypt-later analysis changed how our executive committee talks about data retention. It made the abstract concrete.”
Dr. Kenji Mori

Dr. Kenji Mori

Head of Information Risk, Halcyon Health

A security platform should be held to a higher standard.

Velar never touches private key material. We collect cryptographic metadata only, encrypt everything with hybrid post-quantum TLS, and give you full control over data residency.

SOC 2 Type II
Hybrid PQ TLS in transit
US / EU data residency
Customer-managed keys
ISO 27001 certified
SSO, SCIM & audit logs

Built to answer the examiner.

Every finding maps to the frameworks your auditors already ask about — with evidence generated as a byproduct of the scan.

SOC 2ISO 27001DORAPCI DSS 4.0NIS2FedRAMPHIPAACNSA 2.0MITRE

Plans from a single domain to a global estate.

Start with a free external scan. Upgrade for continuous monitoring and migration management.

See pricing

Frequently asked questions

Quantum is a when, not an if.

Get your Velar Quantum Risk Score in under an hour. No agents required for the external scan.

Quantum-readiness intel, monthly.

Standards updates, migration playbooks and threat research from the Velar labs. Read by 12,000+ security leaders.

No spam. Unsubscribe any time. We never share your address.