Tim Callan and Jason Soroko
Root Causes: A PKI and Security Podcast
Digital certificate industry veterans Tim Callan and Jason Soroko explore the issues surrounding digital identity, PKI, and cryptographic connections in today's dynamic and evolving computing world. Best practices in digital certificates are continually under pressure from technology trends, new laws and regulations, cryptographic advances, and the evolution of our computing architectures to be more virtual, agile, ubiquitous, and cloud-based. Jason and Tim (and the occasional guest subject matter expert) will help you stay current on developments in this essential technology platform and to u...
Author
Tim Callan and Jason Soroko
Category
Podcast website
Latest episode
Jul 10, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Root Causes 589: Is a Cryptographically Relevant Quantum Computer Economically Viable? 06.03.2026 9:35
We recently heard the argument that it's simply too expensive to develop a cryptographically relevant quantum computer. We vehemently disagree. In this episode we explain why.
Root Causes 588: It's Cryptographic Frogger from Here on Out 04.03.2026 9:55
In this episode Tim explains that the transition to PQC is not just a change in cryptographic algorithms but also a fundamental shift in how we treat our cryptography. From here on out, IT systems need to be fundamentally crypto agile in a way we've never had to be before. Cryptographic Agility is the key to solve this problem.
Root Causes 587: AI Orchestration for Attackers 02.03.2026 10:55
YouTube video version of this episode https://youtu.be/-wMy3rPV1Lg
Root Causes 586: Beyond Harvest Now Decrypt Later 27.02.2026 8:39
We expand on the concept of trust-now-forge-later to list a whole bevy of additional attacks that eventually will be enabled by cryptographically relevant quantum computers.
Root Causes 585: The Cryptographic Inventory Manifesto 25.02.2026 8:54
We all love a good manifesto! Jason spells out the ten principles of the Cryptographic Inventory Manifesto, and we discuss.
Root Causes 584: Mapping DORA to CLM 23.02.2026 20:38
We look at the new European DORA and NIS2 regulations and how Certificate Lifecycle Management is a key requirement to meet these requirements. You will be surprised how explicit these requirements are.
Root Causes 583: AI Versus ECC P 256 20.02.2026 10:51
Recorded in Ottawa Ontario.
Root Causes 582: New Research Drastically Cuts Number of Qubits for Cryptographic Relevance 17.02.2026 14:11
New research indicates that the number of qubits necessary to achieve cryptographic relevance has reduced by two orders of magnitude. We cover this breaking news and its implications.
Root Causes 581: A Timeline for Deprecation of Manual DCV Methods 15.02.2026 13:09
By CABF ballot all manual methods of Domain Control Validation (DCV) will be deprecated by 2028. We explain which methods are due for deprecation and when.
Root Causes 580: Top Use Cases for Hybrid Certificates 13.02.2026 12:47
We go over the qualities in abstract of a use case that strongly invites the use of hybrid certificates and then run down a list of specific use cases that meet these criteria. This includes OT systems, code signing, secure boot, WiFi, enterprise S/MIME, and more.
Root Causes 579: Make Cryptography Boring Again 10.02.2026 17:44
In this episode Jason declares that we must make cryptography boring again. We get into what that means and why it matters.
Root Causes 578: 200 Days Won't Actually Be 200 Days 09.02.2026 10:10
We have seen much talk of the upcoming drop of maximum TLS term to 200 days, followed by 100 days, and eventually down to 47 days. It happens that all those numbers are too large and the actual maxima will be less than that. We explain.
Root Causes 577: All the Stuff That's Coming in March 06.02.2026 10:05
March 2026 is due to be the most eventful month in the history of the WebPKI. Join us as we go over all the many changes coming next month.
Root Causes 576: Jeffries Dumps Bitcoin Due to the Quantum Threat 04.02.2026 6:51
A large investment firm divests from Bitcoin for fear of the quantum threat.
Root Causes 575: Shortening Certificate Term - All the Dates 02.02.2026 20:49
Everybody knows about March 15 and the drop in maximum public TLS certificate term to 200 days. But that only scratches the surface on key dates with this maximum term reduction. Join us as we go over "all the dates" for TLS maximum term reduction.
Root Causes 574: 2025 Predictions Scorecard - Part 2 30.01.2026 19:33
We score our 2025 predictions in this second of two parts.
Root Causes 573: 2025 Predictions Scorecard - Part 1 28.01.2026 23:19
Every new year we make predictions for the year to come, and every year we go back and see how we did. This is the first of two parts scoring our 2025 predictions.
Root Causes 572: Quality of Entropy 26.01.2026 8:44
We discuss the idea that not all cryptographic entropy is equally "random" and potential consequences.
Root Causes 571: Will There Ever Be a Cryptographically Relevant Quantum Computer? 23.01.2026 9:16
We discuss the idea that it might be impossible to actually create a cryptographically relevant quantum computer and weigh in on this idea.
Root Causes 570: PQC Readiness at the Boardroom Level 21.01.2026 12:09
Repeat guest Chris McGrath shares what enterprises need to be doing now to stay on track for the NIST PQC deadline in 2030.
Root Causes 569: New Regulations Are Changing the PKI Landscape 19.01.2026 9:58
Repeat guest Chris McGrath joins us to discuss how increasingly strict regulations are requiring increased rigor, visibility, and auditability for enterprise digital certificates and PKI.
Root Causes 568: Upping Your Certificate Game for Better Security 16.01.2026 12:35
Senior cyber security advisor Chris McGrath joins us to discuss redefining digital certificates and their role in your organizational security profile, increasing regulation of certificates, and how enterprises can up their certificate game.
Root Causes 567: Top 10 PQC Laggards in the Enterprise 14.01.2026 20:44
We name the ten enterprise environments and use cases that are most likely to be late adopters of post quantum cryptography (PQC).
Root Causes 566: Time Is a Security Primitive 12.01.2026 12:18
We discuss the foundational importance of time in PKI and security in general. This includes when things happen, the order in which things happen, and attacks based on time-spoofing. We drill down on certificates, roots, timestamping, Certificate Transparency, patching, audits, and PQC.
Root Causes 565: Our Response to QWAC Arguments - Part 3 08.01.2026 11:36
In our concluding episode on the topic, we scrutinize arguments made for and against QWACs, this time focused on "compliance and interoperability."
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.