PKI & Cryptography Consulting for Western Australia

PKI, HSM & IoT cryptography for Western Australia

Vendor-neutral design, migrations, crypto audits and lifecycle automation. On-site availability in Perth & WA (AWST). We align technical controls with Australian frameworks and sector obligations—especially for Mining and Pharmaceutical environments—and prepare teams for post-quantum.

Local presence: Perth WA (speak to a local consultant) • Time zone: AWST • Contact us Book a discovery call (AWST) Send an enquiry

PKI Crypto policy

PKI design & hierarchy modernisation

Offline root, issuing tiers, AIA/CDP/OCSP, HA revocation, ceremony evidence; runbooks built for mining sites and regulated pharma GMP plants.

  • Profile/EKU and validity baselines aligned to ASD ISM and ACSC Essential Eight maturity
  • CLM integration (Venafi / EJBCA / Keyfactor), ACME/EST device enrollment
  • Change windows with blue/green rollovers and evidence packs
HSM Ceremonies

HSM custody & key management

M-of-N key ceremonies, RBAC/SoD, backup & recovery with auditable trails (on-prem & cloud HSMs).

  • Key lifecycle aligned to ASD ISM
  • Module assurance via FIPS 140-3 certified devices where required
  • Evidence artefacts for IRAP and third-party assessments
Automation

Certificate lifecycle automation (CLM)

Discovery → policy → issuance → renewal across hybrid estates; SLOs for expiry MTTR, OCSP freshness, CRL age.

  • Agents/APIs, ACME/EST; policy folders & approvals
  • Dashboards for audits (Mining OT segments & Pharma GMP networks)
  • De-risk emergency renewals with validated patterns
PQC

Post-quantum readiness

CBOM, hybrid certificates, pilot → rollout aligned to AU adoption of NIST PQC selections.

  • Algorithm policy & crypto-agility design for long-lived OT and GMP assets
  • Protocol & performance impact testing (handshake p95/p99)
  • Parallel PKI design & deprecation plan
Audit

Cryptographic audits (infra & code)

CodeQL code scans + infra review mapped to AU controls and sector obligations.

IoT/OT

IoT identity & industrial PKI

Device enrollment at scale, constrained profiles, secure boot & signing for pits, plants, pipelines and process control.

  • OT guidance per ACSC Protecting ICS & ISA/IEC 62443
  • HA OCSP/CRL for remote sites; intermittent connectivity patterns
  • Firmware signing (LMS/HSS), supply-chain attestations

Western Australia sector focus

Mining (WA)

Pharmaceutical / Life Sciences

Government & Regulated

Policies, privacy & incident handling

We don’t provide legal advice. Our designs align technical controls and evidence with these frameworks so your legal/compliance teams can demonstrate conformity.

Request a WA on-site Send an enquiry