Security Weekly Podcast Network (Audio) Preparing For Q-Day as CISOs Face Quantum Disruption and Cyber Resilience Pressures - Sandy Carielli - BSW #434
Feb 11, 2026
Sandy Carielli, Forrester VP and principal analyst focused on application and product security, discusses preparing for Q-Day and post-quantum readiness. She covers urgency around 2030, regulatory and vendor migration pressures, harvest-now decrypt-later risks, the need for cross-functional teams and procurement questions, and cryptographic agility and proxy strategies for legacy systems.
AI Snips
Chapters
Transcript
Episode notes
Q‑Day Is Now A Near‑Term Business Problem
- Quantum progress and regulatory mandates have shifted Q-Day from theoretical to an urgent, near-term business problem.
- Organizations should target readiness around 2030 because both tech advances and rules are compressing timelines.
Create Urgency With Harvest‑Now, Decrypt‑Later
- Explain harvest‑now, decrypt‑later and regulatory timelines to create executive urgency and justify budget now.
- Prioritize systems for migration based on data longevity and business impact rather than trying to do everything at once.
Prioritize Data By Long‑Term Value
- Look backward at harvested data by prioritizing data that remains valuable years from now, like health and contractual records.
- Not all harvested data is equally risky over long horizons; prioritize accordingly.
