Entrust Transforms Cryptographic Data into Proactive Security Solutions
Entrust has introduced enhanced features for its Cryptographic Security Platform (CSP), enabling organizations to convert Cryptographic Bill of Materials (CBOMs) data into actionable security measures.
Addressing Modern Challenges
The updates address challenges faced by government agencies, financial institutions, healthcare providers, and critical infrastructure operators, including heightened cyber threats, abbreviated certificate lifespans, the proliferation of machine and AI identities, shifting compliance mandates, and the shift toward post-quantum cryptographic standards. Effective management of these evolving demands requires a detailed understanding of cryptographic assets and their interdependencies across systems.
Regulatory Compliance and CBOM Mandates
Global regulatory frameworks, such as the U.S. Executive Order and the EU’s DORA and NIS2 regulations, have mandated CBOM-based inventories, underscoring the necessity for organizations to map their cryptographic assets, dependencies, and risk exposure. The CSP now integrates cryptographic discovery with governance, automation, and post-quantum migration planning, allowing entities to identify and mitigate risks within complex IT environments.
New CBOM Import and Export Functionalities
New CBOM import and export functionalities enable more thorough cryptographic inventories, facilitating the identification of vulnerable or noncompliant assets, assessment of system dependencies, and prioritization of remediation efforts. The platform’s deployment options have expanded to include a cloud-based service model alongside on-premises solutions, offering flexibility to align with organizational security, operational, and data sovereignty requirements.
Key Advancements in CSP
Enhanced Governance and Risk Mitigation
CBOM import/export capabilities, combined with cryptographic discovery and compliance tools, allow organizations to create comprehensive inventories. This enables correlation of cryptographic data with system dependencies, strengthening oversight of keys, certificates, and secrets across the enterprise.
Scalable Certificate Management
New Ansible-based automation features streamline certificate lifecycle operations, supporting large-scale deployment and management across hybrid PKI environments. This reduces manual intervention and minimizes service disruptions.
Post-Quantum and Identity Readiness
Expanded support for composite algorithms facilitates phased migration to post-quantum cryptography, while SPIRE-based capabilities enhance trust management for AI agents and non-human workloads. The CSP’s unified approach to cryptographic visibility, governance, automation, and future-proofing positions organizations to adapt to evolving standards.
Industry Expert Perspectives
Michael Klieman, Global Vice President of Product Management at Entrust, emphasized that CBOMs must transcend static inventories, requiring integration with dependent systems to pinpoint risk concentrations and guide proactive measures. The updated platform bridges the gap between cryptographic documentation and active governance, enabling enterprises to secure their cryptographic infrastructure more effectively.
Jennifer Glenn, Research Director for Information and Data Security at IDC, highlighted that cryptographic inventory must now be dynamic, given the rapid growth of certificates, machine identities, and impending post-quantum transition deadlines. Enterprises that integrate these elements will better navigate cryptographic agility as industry requirements evolve.
