UAE Cyber Security Council and ATRC Partner to Build a Quantum-Safe National Security Framework
The UAE Cyber Security Council and ATRC have signed an agreement to accelerate the nation's transition to post-quantum cryptography, deploying sovereign tools including the Crypto Discovery Tool and quantum key distribution.

UAE Cyber Security Council officials and ATRC representatives at a technology signing ceremony representing the national quantum-safe security partnership in 2026
The UAE Cyber Security Council (CSC) has signed a formal agreement with the Advanced Technology Research Council (ATRC) and its affiliated entities to accelerate the country's national transition to quantum-safe security. The signing took place at Make it in the Emirates and marks one of the most significant cryptographic infrastructure commitments in the region to date.
The agreement was concluded between VentureOne, ATRC's commercial arm, and the CSC, with the objective of deploying and scaling a suite of post-quantum cybersecurity technologies. The initiative supports what is described as one of the world's first coordinated national post-quantum migration plans.
What is being deployed
At the core of the programme are three interconnected technologies:
- The Crypto Discovery Tool (CDT), developed by QuantumGate and customised to meet requirements set by the UAE National Cryptography Center. The CDT enables organisations to conduct cryptographic inventory management, vulnerability assessment, and build a structured migration roadmap toward quantum-resilient encryption.
- Entanglement-based Quantum Key Distribution (EQKD), developed at the Technology Innovation Institute (TII) and commercialised by VentureOne. EQKD uses quantum entanglement to generate encryption keys. Following a successful pilot that connected data centres at a major Abu Dhabi entity, the technology will now be scaled across government and enterprise environments.
- National cryptographic libraries developed by TII, which serve as the UAE's official cryptographic foundation. The libraries cover both classical and post-quantum algorithms and are designed for broad integration into government and enterprise systems.
Why this matters for the GCC
The threat posed by quantum computing to current public-key cryptography is not theoretical. NIST finalised its first post-quantum cryptographic standards in 2024, and nations across the world are now under pressure to begin migration before cryptographically relevant quantum computers emerge. In the Gulf, where Vision 2030 and similar national digitalisation programmes have deepened the footprint of digital infrastructure in critical sectors, the exposure window is significant.
H.E. Dr. Mohamed Al Kuwai, Head of Cyber Security at the UAE Government, stated that preparing for the impact of quantum computing is a national priority and that strengthening cryptographic foundations today ensures the long-term security of the country's digital infrastructure.
For enterprise security leaders in the region, the programme carries operational implications. The CDT's deployment pathway is designed to allow organisations to establish a clear migration plan rather than face a disruptive endpoint change. The tool provides a data-driven view of cryptographic readiness across complex enterprise environments.
Workforce and compliance dimension
Beyond technology deployment, the initiative includes national readiness programmes, workforce training, and awareness initiatives. TII's Security Laboratory, one of the only facilities in the UAE dedicated to cryptographic compliance testing, will support validation of cryptographic assets against national regulatory requirements and internationally approved standards, including those established by NIST.
This aligns with the broader direction of UAE cybersecurity policy, which has increasingly emphasised sovereign technology development alongside regulatory alignment with international frameworks. The Siemens partnership announced earlier this month similarly extended CSC's reach into operational technology environments, signalling a coordinated effort to harden multiple infrastructure layers simultaneously.
Organisations operating across government procurement, financial services, and critical infrastructure in the UAE should treat this announcement as an early indicator of forthcoming compliance obligations. The transition to quantum-safe cryptography is now a government-backed national programme, not a voluntary best practice.
Layla Haddad
Cyber Policy & Digital Risk CorrespondentLayla Haddad covers cybersecurity regulations, data protection laws, and digital transformation initiatives across GCC and North Africa. She has worked closely with compliance teams, fintech startups, and government advisory groups. Her articles explore how cyber policy, AI governance, and privacy frameworks shape the region’s digital future.