Entrust Expands Cryptographic Security Platform to Tackle Post-Quantum Risk and Compliance
By Lauren Towner · 17 September 2026

Entrust has introduced new capabilities for its Cryptographic Security Platform (CSP) to help financial institutions and government agencies manage Cryptographic Bill of Materials (CBOMs). As regulations like DORA and NIS2 mandate stricter inventory of cryptographic assets, these updates provide the visibility necessary to navigate post-quantum transitions and the rapid rise of AI-driven identities.
What was announced
Entrust’s Cryptographic Security Platform now allows organizations to turn CBOM data into operational action. The platform includes new import and export capabilities, enabling users to build comprehensive inventories and understand the dependencies between cryptographic assets and the applications that rely on them. This is particularly relevant for entities managing shorter certificate lifecycles and evolving compliance requirements under the U.S. Executive Order and the EU’s DORA and NIS2 regulations, which require CBOMs-based inventories.
The update introduces Ansible-based capabilities to automate certificate deployment and management across complex, highly customized environments. This automation is designed to reduce manual effort and minimize service disruptions as certificate volumes grow across public and private PKI environments. To address the transition to post-quantum cryptography, the platform has expanded support for composite algorithms, facilitating phased migration strategies. Additionally, new SPIRE-based capabilities have been integrated to support trusted identities for AI agents and other non-human workloads.
Flexibility in deployment has also been enhanced; the CSP is now available both as-a-service and for on-premises deployment. This allows organizations to access CBOM capabilities while maintaining control over data sovereignty and security requirements. By connecting discovery, compliance, and operational health, the platform aims to help organizations identify vulnerable or noncompliant assets, determine which systems depend on them, and prioritize remediation efforts across their entire cryptographic infrastructure.
"A CBOM is more than a static inventory. Security teams need to connect CBOM data with the systems and applications that depend on cryptography, understand where risk is concentrated and determine what actions to take next. The addition of CBOM support to the platform helps organizations move from documenting cryptographic assets to actively governing and securing them."
Michael Klieman, Global Vice President of Product Management at Entrust.
The companies involved
Entrust is a global leader in identity, payments, and data protection, providing a wide range of solutions including certificate management, hardware security modules (HSMs), and identity verification. The company serves a diverse client base that includes government agencies, healthcare organizations, and some of the world’s largest financial institutions. Entrust has positioned itself as a pivotal player in the transition to "crypto-agility," a concept that describes an organization's ability to update cryptographic algorithms and certificates without disrupting underlying systems.
The company’s focus on high-assurance security makes it a primary partner for critical infrastructure operators who are currently under pressure to modernize their security stacks. As the industry moves toward post-quantum standards, Entrust’s role in managing machine and AI identities has become increasingly central to its market strategy. The company operates in a highly competitive landscape of cybersecurity and identity management providers, where the ability to integrate with existing DevOps tools like Ansible and identity frameworks like SPIRE is a significant differentiator for enterprise-scale deployments.
What FF News has reported before
FF News has followed Entrust’s recent efforts to secure emerging technologies and combat sophisticated fraud. In July 2026, the company addressed the rise of autonomous systems when Entrust Launches Agentic AI Trust Accelerator to Secure Autonomous AI for Financial Institutions. This followed their work in the biometric space, specifically when Entrust Launches Biometric Authentication Solution to Combat AI-Generated Deepfakes.
The firm has also been active in specific sector applications, such as when Veyco and Entrust Deliver the First Integrated QES with Standards-aligned Identity Verification for UK Property Transactions. Furthermore, their research has highlighted the evolving threat landscape, as seen in the Entrust 2026 Identity Fraud Report Reveals Surging Attacks and Diversifying Tactics. These reports underscore the increasing complexity of identity fraud that the new CSP updates aim to mitigate.
What this means
This announcement signals a shift in the cybersecurity industry from passive inventory to active cryptographic governance. For the fintech sector, the pressure is mounting; legacy systems often lack the "crypto-agility" required to swap out algorithms as post-quantum standards become mandatory. By integrating CBOMs into a functional platform, Entrust is challenging competitors to move beyond simple discovery tools. The real test for the market will be how quickly institutions can remediate vulnerabilities identified by these inventories. As regulators move from suggesting to requiring CBOMs, any vendor unable to provide deep visibility into cryptographic dependencies will likely find themselves excluded from critical infrastructure tenders.
Companies in this story: Entrust
People in this story: Michael Klieman, Jennifer Glenn