A commentary circulated for World Quantum Readiness Day is urging Singaporean organisational leaders to begin building “quantum readiness” into technology governance and long-term resilience planning, citing research that suggests preparations for post-quantum cryptography (PQC) remain limited.
In the commentary, Frank Bignone, SVP and head of corporate strategy and growth at FPT Software and FPT Corporation, argues that many enterprise security strategies rely on the assumption that current encryption will remain secure indefinitely, and asks whether organisations can migrate quickly enough if that assumption fails.
Bignone points to Singapore initiatives including the National Quantum-Safe Network, but cites a 2026 Ponemon study (via Entrust) that he says found only around a third of Singaporean organisations are actively preparing for PQC, describing this as a downward trend compared with three years earlier. The commentary also states that half of security leaders surveyed expect a cryptographically relevant quantum computer within five years.
The piece frames the issue as especially relevant to Singapore’s role as a finance, trade and digital services hub, arguing that cryptographic dependencies can extend across multi-jurisdiction supply chains, cross-border payment systems, and third-party platforms operating under different regulatory timelines. That complexity, it says, makes it harder to map cryptographic dependencies and plan migration.
Bignone also draws a comparison with enterprise AI adoption, referencing research from FPT and Forrester that found 54% of organisations have adopted AI within business units and departments, while 23% have achieved enterprise-wide AI adoption under a unified strategy. He suggests a similar gap could emerge between organisations experimenting with quantum-related technologies and those embedding readiness into governance and operations.
The commentary says organisations “further along” in quantum readiness are beginning to map cryptographic dependencies and assess future migration requirements, calling visibility into where cryptography is embedded across the enterprise a practical first step as standards evolve.
It also notes that quantum computers capable of breaking RSA are still considered years away by “most credible estimates,” but argues that enterprise migration and legacy replacement efforts often take longer than technology shifts, making early planning important.

