Our Services
Production-ready modules, not theoretical consulting
Fira delivers post-quantum cryptography as packaged, deployable modules. Each service produces production-ready components with deployment runbooks, so your team can deploy independently across environments.
Transport Security
ML-KEM hybrid key exchange for TLS traffic
How It Works
Hybrid mode: PQC key exchange runs alongside classical ECDH, ensuring backward compatibility. If either algorithm is broken, the other still protects the session.
Standards
NIST FIPS 203 (ML-KEM), aligned with IETF hybrid TLS drafts
Deliverables
- Configured TLS modules
- Integration guides
- Performance benchmarks
- Deployment runbooks
Scenario
An ECM or document management platform serving hundreds of enterprise clients needs quantum-safe transport without breaking existing integrations. Fira's approach: hybrid TLS deployed as a drop-in module, rolled out tenant by tenant, transparent to end users.
Digital Signatures
ML-DSA digital signatures alongside classical schemes
How It Works
Dual-signature approach: documents carry both classical (RSA/ECDSA) and PQC (ML-DSA) signatures. Verifiers use whichever they support. Future-proof without breaking current workflows.
Standards
NIST FIPS 204 (ML-DSA), eIDAS 2.0 readiness
Deliverables
- Signature modules
- Key management guides
- Verification libraries
- Compliance documentation
Scenario
A qualified trust service provider operating under eIDAS 2.0 must issue signatures that remain valid through the post-quantum transition. Fira's approach: ML-DSA running as a dual-signature layer alongside classical RSA/ECDSA, with no change to existing signer or verifier workflows.
Authentication & Data Encryption
PQC-upgraded OAuth/JWT + ML-KEM key wrapping
How It Works
Token signing upgraded to PQC algorithms, preventing forged authentication tokens. Key wrapping ensures that even if encrypted stored data is exfiltrated, it remains protected.
Standards
NIST FIPS 203 (ML-KEM), FIPS 204 (ML-DSA)
Deliverables
- Authentication modules
- Key wrapping libraries
- Migration guides
- Deployment runbooks
Scenario
A ground system handling Earth observation and space situational awareness data must protect mission archives with multi-decade scientific value against harvest-now-decrypt-later attacks. Fira's approach: ML-KEM key wrapping for data at rest, combined with PQC-upgraded token signing for operator authentication.
How We Deliver
Structured process, predictable outcomes
Discovery
Architecture review and cryptographic posture assessment
Development
Module development and integration per service block
Validation
Performance testing and security validation
Handover
Packaged modules, deployment runbooks, configuration guides
Engagement Models
Flexible options for your requirements
Pilot Project
from £55,000 · fixed fee
Single service block, fixed fee, 10-14 weeks
Ideal for: First-time PQC adoption
Full Quantum-Safe Upgrade
from £180,000 · phased
All three services, phased delivery, 5-7 months
Ideal for: Comprehensive migration
Advisory & Audit
from £7,500
Cryptographic posture assessment, migration roadmap, compliance gap analysis
Ideal for: Planning and preparation
Investment
Transparent pricing for assessment and migration
Indicative pricing for medium-complexity organisations. Contact us for a custom quote.