|
시장보고서
상품코드
2086867
양자 위협은 이미 도래 : ‘Q-Day’ 이전에 제3자 암호화 대비 상태를 입증하기 위한 서비스 제공업체 가이드, 제1부 - 현황 및 전략적 지침Quantum Risk Is Already Here: A Provider´s Guide to Demonstrating Third-Party Cryptographic Readiness Before Q-Day, Part 1 - Situation and Strategic Guidance |
||||||
이번 IDC Market Perspective에서는 제3자에 의한 포스트 양자 대응의 필요성에 대해 다루고 있습니다. 기업의 데이터 보안에 대한 양자 위협은 미래의 위험이 아니라, 현재 진행형으로 두 가지 측면에서 복합적으로 다가오는 위협입니다. '지금 수집, 나중에 복호화(HNDL)'라고 불리는 공격에서는 현재 암호화된 데이터가 수집된 후, 나중에 복호화되도록 되어 있습니다. 또한, IDC가 HNDL에 대응하는 인증 계층의 위협으로 제시한 'Trust now, forge later(TNFL)'이란, 공격자가 현재 서명된 데이터를 수집한 뒤, 조직이나 규제 당국이 진위 여부를 구분할 수 없도록 출처 기록을 사후에 위조하는 것을 의미합니다. NIST가 2024년 8월에 3가지 PQC 표준을 최종 확정하고, CISA가 2026년 1월에 연방 조달 지침을 발표했으며, NIST IR 8547은 양자 공격에 취약한 비대칭 알고리즘을 각각 2030년 및 2035년까지 사용을 권장하지 않고, 최종적으로는 사용을 금지할 것을 제안하고 있는 바, 규제 환경의 변화에 따라 전환은 단순한 계획 단계에서 규정 준수 의무로 전환되었습니다.
이 보고서는 2부로 구성된 IDC Market Perspective 시리즈의 제1부입니다. 본고에서는 제3자 리스크 관리에 있어 PQC 대응을 위한 전략적 및 위협적 맥락을 밝힙니다. 여기에는 HNDL 및 TNFL이라는 위협 차원, 모스카의 부등식을 기반으로 한 우선순위 지정 프레임워크, 새롭게 부상하고 있는 양자 보안 태세 관리(QSPM) 및 양자 TRiSCM의 운영 모델, 그리고 성숙한 프로그램이 채택하고 있는 5가지 양자 거버넌스 차원과 신뢰성 KPI가 포함됩니다. 『양자 위험은 이미 현실이 되었습니다. ‘Q-Day’를 앞두고, 타사 암호화 기술에 대한 대응 현황을 평가하기 위한 기업 구매자용 가이드, 파트 2 - 평가 프레임워크 및 도입 가이드』(IDC#US54672326, 조만간 공개 예정)에서는 총 48문항으로 구성된 ‘타사 양자암호화 대응 현황 평가 프레임워크’를 완전판으로 제공합니다. 암호화와 인증 모두에서 신뢰할 수 있는 이행 체계를 입증하지 못하는 제공업체는 공식적인 의무화가 시행되기 전에 심각한 지적을 받을 위험에 직면하게 될 것입니다.
'모든 기술 제공업체에게는 두 개의 시계가 동시에 돌아가고 있습니다. 첫 번째는 『HNDL 시계』입니다. 현재, 양자 공격에 취약한 알고리즘으로 암호화된 데이터는 10년 이내에 해독될 가능성이 있으며, 사후에 다시 암호화할 수는 없습니다. 두 번째는 『TNFL 시계』입니다. 현재, 양자 공격에 취약한 키로 서명된 모든 아티팩트는 양자 컴퓨터가 표준 암호화를 해독할 수 있는 수준까지 발전했을 때, 공격자가 악용할 수 있는 공격 대상을 확대하게 됩니다. 두 시계 모두 멈출 수 없습니다. 유일한 합리적인 대응책은 PQC로의 전환을 미래의 프로젝트가 아닌, 조직이 지금까지 수행해 온 인프라 프로그램 중 시간적 제약이 가장 엄격한 것으로 규정하고, 고객의 요청이 있기 전에 거버넌스, 자산 관리, 그리고 암호화 민첩성에 관한 기반을 구축하는 것입니다’라고 필립 D. 해리스(Philip D. Harris, CISSP, CCSK, IDC 거버넌스·리스크 및 컴플라이언스 솔루션 부문 리서치 디렉터)는 말했습니다.
This IDC Market Perspective discusses the need for third-party post-quantum readiness. The quantum threat to enterprise data security is not a future risk - it is a present, compounding threat across two dimensions. Harvest now, decrypt later (HNDL) attacks are collecting encrypted data today for retroactive decryption. Trust now, forge later (TNFL) - introduced by IDC as the authentication-layer counterpart to HNDL - describes adversaries harvesting signed artifacts currently to retroactively forge provenance records that organizations and regulators cannot distinguish from authentic ones. With NIST finalizing three PQC standards in August 2024, CISA issuing federal procurement guidance in January 2026, and NIST IR 8547 proposing to deprecate and ultimately disallow quantum-vulnerable asymmetric algorithms by 2030 and 2035, respectively, the regulatory landscape has converted migration from a planning exercise into a compliance obligation.This document is part 1 of a two-part IDC Market Perspective series. It establishes the strategic and threat context for PQC readiness in third-party risk management - including the HNDL and TNFL threat dimensions, Mosca's inequality prioritization framework, emerging Quantum Security Posture Management and Quantum TRiSCM operating models, and the five quantum governance dimensions and trust KPIs that mature programs are adopting. Quantum Risk Is Already Here: A Provider's Guide to Demonstrating Third-Party Cryptographic Readiness Before Q-Day, Part 2 - Assessment Framework and Deployment Guide (IDC #US54672326, forthcoming) delivers the complete 48-question Third-Party Quantum Encryption Readiness Assessment Framework. Providers that cannot demonstrate a credible migration posture across both encryption and authentication now risk material findings before formal mandates arrive."Two clocks are running simultaneously for every technology provider. The first is the HNDL clock; data encrypted currently under quantum-vulnerable algorithms is potentially readable within a decade, and it cannot be re-encrypted retroactively. The second is the TNFL clock: every artifact signed currently under a quantum-vulnerable key extends the attack surface that adversaries will exploit once quantum computers have advanced to the point of breaking standard encryption. Neither clock can be paused. The only rational response is to treat PQC migration not as a future project but as the most time-sensitive infrastructure program your organization has ever run - and to build the governance, inventory, and crypto-agility foundations before your customers ask for them," says Philip D. Harris, CISSP, CCSK, research director, Governance, Risk, and Compliance Solutions at IDC.