Sebastien Rousseau

CATEGORY

Infrastructure & cryptography

Post-quantum cryptography, cloud-native banking, platform engineering, and the engineering stack that runs the rail.

14 tags

Tags in this category

  • Post-quantum cryptography — 75 articles

    NIST PQ standards, harvest-now-decrypt-later threat, hybrid handshakes, and the migration of banking cryptography to lattice-based primitives.

  • Quantum computing — 25 articles

    Hardware progress, quantum algorithms, the timeline-to-threat, and where quantum compute crosses paths with banking workloads.

  • Cloud-native banking — 23 articles

    Kubernetes, service mesh, multi-region resilience, and the cloud-native architecture patterns banks are adopting under DORA.

  • Platform engineering — 15 articles

    Internal developer platforms, golden paths, paved roads — how banking technology orgs ship engineering productivity.

  • Sovereign cloud — 13 articles

    Data-residency, regulatory-region cloud, and the architectural trade-offs of running banking workloads inside sovereign boundaries.

  • Blockchain — 10 articles

    Distributed ledger technology in financial infrastructure — consensus, validators, smart-contract execution, and where the primitive shows up in banking.

  • Crypto-agility — 9 articles

    Inventorying cryptographic assets, defining a migration path, and shipping replaceable crypto boundaries in production code.

  • ML-KEM — 8 articles

    FIPS 203 — the standardised post-quantum key encapsulation mechanism (formerly CRYSTALS-Kyber).

  • Cryptography — 8 articles

    Applied cryptography in banking — hashes, signatures, KEMs, key management, and the cryptographic primitives that secure the rails.

  • Operational resilience — 8 articles

    Important business services, impact tolerances, severe-but- plausible scenarios, and the operational-resilience programme banks must run.

  • Cybersecurity — 8 articles

    Operational security in banking — threats, controls, incident response, and the regulatory expectations around resilience.

  • Harvest now, decrypt later — 6 articles

    The HNDL threat model — adversaries capturing encrypted traffic today to decrypt once quantum hardware is available.

  • ML-DSA — 5 articles

    FIPS 204 — the standardised post-quantum digital signature algorithm (formerly CRYSTALS-Dilithium).

  • Edge computing — 2 articles

    Edge workers, anti-fraud at the edge, CDN-as-platform — the role of edge compute in financial workloads.

APPLIED AI

Reading the Emerging-Technology Risk Horizon for Banks in 2026

Regulators have started scanning the horizon out loud. Reading the 2026 emerging-technology landscape for banks across three converging vectors — personalised AI intelligence, synthetic financial crime, and programmable finance — and a framework for turning weak signals into supervisory action before harm scales.

INFRASTRUCTURE & CRYPTOGRAPHY

The Agentic AI Index for Banks in 2026: Measuring Autonomy

Agentic AI is operational infrastructure in 2026. This index measures it the way banks measure capital and credit: a six-dimension readiness score across autonomy tiers, the control plane, regulatory evidence, unit economics, organisational readiness, and global regulatory alignment.

PAYMENTS & MONEY

CIB always-on : reprise cyber, rails de repli et trésorerie quantum-safe

Les banques de financement et d'investissement traitent désormais la reprise cyber, les rails de repli ISO 20022 sur RTGS, instantanés et tokenisés, et les contrôles de trésorerie quantum-safe comme un seul modèle opérationnel always-on — la réponse de niveau conseil aux articles 5 et 6 de DORA, aux primitives FHE, QKD et PQC, et au risque de concentration tiers ICT.

PAYMENTS & MONEY

L'indice de résilience bancaire post-quantique en 2026 : EO 14409, échéances mondiales et agilité cryptographique fiduciaire

L'Executive Order 14409, l'échéance ferme 2030 de l'ANSSI et l'article 5 de DORA ont fait passer la cryptographie post-quantique d'un objectif technique lointain à un mandat réglementaire actif. Cet indice transforme la sécurisation des registres, des registres haute fréquence et des canaux SWIFT en un scorecard 0–5 pour le conseil, qui aligne les primitives ML-KEM, ML-DSA et SLH-DSA sur la responsabilité fiduciaire et le risque de bilan.

INFRASTRUCTURE & CRYPTOGRAPHY

Aube quantique pour la CIB : de KyberLib à une pile de paiements quantum-résiliente

BIS Quantum Dawn et la feuille de route PQC du G7 de janvier 2026 ont fait passer la cryptographie post-quantique de la recherche à l'agenda du conseil. Ce texte prolonge KyberLib, d'une boîte à outils vers un programme de transition CIB à l'échelle de l'entreprise — couvrant les rails de gros montants, le financement du commerce, la conservation et les informations que les régulateurs exigent désormais.

INFRASTRUCTURE & CRYPTOGRAPHY

Des qubits aux profits : enseignements stratégiques du 5e sommet annuel Commercialising Quantum Global 2026 de l'Economist

Le sommet Economist Impact 5th Annual Commercialising Quantum Global 2026 a confirmé le basculement du quantique vers les flux d'entreprise : 1,3 Md$ levés en cinq mois, la cryptographie post-quantique est devenue un enjeu fiduciaire de conseil face au harvesting SNDL, les capteurs quantiques sont déjà livrés pour la navigation indépendante du GPS, et Philip Intallura (HSBC) a martelé qu'attendre le matériel tolérant aux fautes est une faute non provoquée.

INFRASTRUCTURE & CRYPTOGRAPHY

KyberLib et la migration post-quantique des banques en 2026 : des normes au code

KyberLib fait passer la migration bancaire post-quantique de la note de politique au Rust inspectable — encapsulation de clé ML-KEM FIPS 203, handshakes hybrides classique-plus-quantique, compilation no_std pour les HSM, frontières crypto-agiles et les preuves de gouvernance DORA Article 5 que les conseils exigent.

APPLIED AI

CloudCDN : un plan open source pour l'edge nativement IA en 2026

CloudCDN est un plan open source pour l'edge nativement IA — passerelle MCP zéro confiance avec 42 outils, limitation de débit atomique via Durable Objects, passkeys WebAuthn, URLs signées, provenance SLSA Level 3 et 3 185 tests à 100 % de couverture, mappés sur DORA, BCBS 239 et Basel III.