Legal compliance for Banking & Finance
European regulations such as GDPR, NIS2, and DORA require security measures appropriate to the risk, with encryption a central example. For financial data, the relevant risk is its confidentiality lifetime – often 7 to 15+ years. Against the combined threats of AI, upcoming quantum computers, and harvest-now-decrypt-later attacks, computational encryption is increasingly hard to defend as "risk-appropriate" over such long confidentiality periods.
Quantum-safe encryption is the state-of-the-art response for high-value links between sites, to data centers and for centralized backup. A hybrid approach – combining QKD and PQC keys through a standardized key derivation function – keeps the link secure even if one method is later broken (defense in depth).
