Skip to main content
Security Lifecycle

Quantum-Safe Auth

Enterprise IAM with Post-Quantum Security

The sovereign control plane for SoftQuantus. Unified identity and access management with quantum-safe cryptography, zero-trust policies, and comprehensive governance — ready for the post-quantum era.

Defense-in-Depth Architecture

Multiple security layers with quantum-safe cryptography at every tier.

1

Edge Gateway

TLS 1.3, classical key exchange (no ML-KEM hybrid group configured)

2

Protocol Layer

OIDC, SAML, SCIM, WebAuthn

3

Core IAM Engine

Directory, Sessions, Tokens, Policy

4

Governance

Access Reviews, PIM/JIT, Lifecycle

5

Quantum-Safe Layer

ML-KEM Key Generation Only, ML-DSA Proofs, Crypto-Agility

Complete Identity Platform

Everything you need for enterprise identity management, with quantum-safe security built in.

Authentication & SSO

OpenID Connect, OAuth 2.1, SAML 2.0, and WebAuthn/Passkeys. Enterprise-grade single sign-on for all your applications.

Zero Trust Policy Engine

Conditional access policies with device posture, location, and risk-based authentication. Never trust, always verify.

Identity Governance

Lifecycle management, access reviews, and just-in-time privileged access. Automate compliance and reduce standing privileges.

Quantum-Safe Cryptography

ML-DSA signatures for audit proofs. ML-KEM key generation is available via liboqs; encapsulation, decapsulation and hybrid TLS key exchange are not implemented. Crypto-agile architecture ready for NIST standards.

SCIM Provisioning

Automated user lifecycle with SCIM 2.0. Sync identities from HR systems, Azure AD, Okta, and more.

Entitlements & Licensing

Native integration with QCOS and SynapseX. Unified entitlement management for quantum workloads and AI pipelines.

Standards Compliance

Built on open standards with NIST post-quantum cryptography.

OpenID Connect
1.0
✓ supported
OAuth 2.1
Draft
✓ supported
SAML 2.0
-
✓ supported
SCIM 2.0
RFC 7644
✓ supported
WebAuthn
Level 2
✓ supported
FIPS 203 (ML-KEM)
Final
○ key generation only
FIPS 204 (ML-DSA)
Final
✓ supported
FIPS 140-3
-
○ planned

Built for Enterprise

From research labs to regulated industries, QSA adapts to your security requirements.

Enterprise SSO

Unified identity across quantum computing platforms, HPC clusters, and cloud infrastructure. One login, all systems.

Sovereign Deployments

On-premise and air-gapped installations for government and defense. No external dependencies, full data sovereignty.

Regulated Industries

FDA, EMA, and financial compliance with immutable audit trails. Cryptographic evidence for regulatory submissions.

Research Institutions

Federated identity for multi-institution collaborations. Grant-compliant access controls and attribution.

Quantum Hardware Vendors

White-label IAM for your quantum cloud. Customer isolation, multi-tenancy, and branded login experiences.

Hybrid Cloud

Seamless identity federation between on-premise quantum systems and cloud providers. Consistent policies everywhere.

Native SoftQuantus Integration

Quantum-Safe Auth is the unified control plane for all SoftQuantus products. One identity, seamless access across your quantum infrastructure.

Q

QCOS Integration

Unified authentication for quantum circuit execution and job management.

L

QuantumLock Integration

License entitlements tied to identity. Audit proofs signed with user context.

S

SynapseX Integration

Role-based routing policies. AI workloads authorized by identity.

// Token claims for QCOS job
{
  "sub": "user:alice@acme.corp",
  "iss": "https://auth.softquantus.com",
  "aud": ["softqcos", "quantumlock"],
  "scope": "softqcos:execute quantumlock:read",
  "entitlements": {
    "qcos_tier": "enterprise",
    "max_qubits": 127,
    "backends": ["ibm_*", "rigetti_*"]
  },
  "pqc": {
    "alg": "ML-DSA-65",
    "kid": "key-2026-01"
  }
}

Ready for the Post-Quantum Era?

Deploy Quantum-Safe Auth today. On-premise, cloud, or hybrid — with quantum-safe cryptography protecting your identity infrastructure.