Quantum-safe cryptography for enterprises. The Singapore firm that made digital certificates manage themselves - and is getting the world ready for the post-quantum era.
Public Key Infrastructure has a reputation problem. It is one of the most proven ideas in computer security - the math behind the padlock in your browser, the signature on a software update, the encryption on a sensitive email. It is also, in practice, a chore. Certificates expire. Requests pile up. Renewals get missed. Entire outages have been traced to a single lapsed certificate nobody was watching.
Sixscape Communications, founded in Singapore in 2014, built its entire company around that gap between the theory and the operations. Its thesis is narrow and unfashionable: the cryptography usually works; it is the management that breaks. So Sixscape set out to automate the management.
The result is a family of products that sit on one engine - a patented protocol for requesting, retrieving and managing digital certificates - and a platform, IDcentral, for governing the whole certificate lifecycle. The company's own shorthand for what it delivers is blunt: certificate deployment "in seconds, not weeks and months."
That pitch has taken on new urgency. Certificate lifespans are shrinking across the industry, turning a once-a-year task into a near-constant one. And a slower-moving but larger shift looms behind it: the migration to post-quantum cryptography, as organizations prepare for a day when today's encryption could be unwound by quantum computers. Sixscape has repositioned itself squarely at that intersection - PKI and post-quantum visibility, automation, management and compliance.
At its core, Sixscape is a digital-certificate company. Everything it sells is a different application of the same idea - give people, devices and messages a cryptographic identity, then use that identity to authenticate, sign and encrypt. Where most vendors expose the ugly machinery of PKI, Sixscape tries to hide it behind automation.
The customers are enterprises, governments and service providers - organizations large enough that manual certificate management has become a liability. They rarely buy Sixscape directly. The company runs a 100% partner-centric model, reaching the market through system integrators, resellers and certificate authorities who fold its suites into broader security deployments.
The problems it targets are the unglamorous ones that cause real damage: expired certificates that trigger outages, shared-secret passwords that get phished, IoT fleets shipped with no durable identity, and email that travels unsigned and unencrypted. Sixscape's answer to each is the same primitive - an automatically provisioned certificate - applied in a different place.
"We plan to become a global leader in secure messaging, which we have simplified by automating digital certificate management."
— Lawrence Hughes, Co-founder & Chief Scientist
Five suites and a set of platform services, all riding on the Identity Registration Protocol and the IDcentral trust-management platform.
Certificate lifecycle management and cryptographic posture management, with a hosted edge deployment for fast rollout.
Password-less, cryptographic push authentication and MFA using certificate-backed key material - the SixToken family.
S/MIME signing and encryption apps plus Outlook plug-ins for Windows, Mac, iOS and Android, with LDAP/AD integration - SixMail.
Certificate-based device identity and end-to-end security deployable across large IoT fleets.
Secure chat, audio, video and file transfer using the SixChat protocol and end-to-end encryption.
The patented automation engine, granted IANA port 4604, that requests, retrieves and manages X.509 certificates.
The certificate lifecycle market is not empty - names like DigiCert, Entrust, Sectigo, Keyfactor, Venafi and AppViewX all work nearby. Sixscape's distinction is less about a single feature and more about where it draws the line. Rather than treating automation as an add-on to a certificate authority, it makes the automation protocol the center of gravity and lets the suites hang off it.
Two things are genuinely unusual. The first is the Identity Registration Protocol itself - a startup-invented protocol that was granted an official IANA port assignment, 4604. That is a rare piece of standards-body recognition for a company this size. The second is breadth relative to headcount: roughly a dozen people ship email, authentication, IoT and communications products off a shared cryptographic core, a claim the company backs with "over 100 combined years" of cryptographic experience on its bench.
Its partner-first commercial model is a deliberate choice too. By selling through integrators and certificate authorities rather than competing with them, Sixscape positions itself as the automation layer inside other people's trust stacks.
Sixscape licenses its software suites and the IDcentral platform to enterprise, government and service-provider customers, delivered entirely through channel partners. That keeps the direct team small and pushes go-to-market cost onto integrators who already own the customer relationship.
Where does it fit in the wider market? Certificate lifecycle management and cryptographic posture management have moved from back-office hygiene to board-level concern, driven by two forces: shrinking certificate lifespans that make manual renewal untenable, and the coming migration to post-quantum algorithms. Sixscape is a focused, independent player in that space - not the largest, but one with a patented protocol, standards recognition and a decade of PKI depth.
"Sixscape is a truly disruptive cryptography company, with authentication and encryption solutions that enable secure communications."
— Brijesh Pande, Managing Partner, Tembusu ICT Fund I
Sixscape traces back to Lawrence Hughes, its co-founder and chief scientist, who invented the Identity Registration Protocol and the SixChat protocol the company builds on. Hughes is not new to security entrepreneurship - he was a co-founder of CipherTrust, one of the early pioneers of email security, which gives the company a lineage in exactly the problem it is trying to automate.
Today the company is led by CEO Dean Bell, who oversees growth and strategy after more than two decades building the international presence of US and European cybersecurity firms across enterprise, government and service-provider markets. Around them sits a compact technical team of architects and PKI specialists, plus regional sales leads for India/SAARC and the Americas.
"We've had a stellar year in 2021 and start to 2022 despite covid, onboarding a significant number of new customers."
— Dean Bell, CEO
Lawrence Hughes launches the company in Singapore as an R&D effort in PKI automation and the Identity Registration Protocol.
SixMail S/MIME email security and the Sixscape Certificate Manager arrive, built on automated certificate handling.
Tembusu ICT Fund I invests to scale secure messaging and certificate automation.
The Identity Registration Protocol gains IANA port 4604; IoT security offerings expand.
Company reports 44% year-over-year growth and significant net-new customer onboarding.
Hosted trust-management platform enables certificate deployment in seconds; Dean Bell leads as CEO.
Sixscape repositions around post-quantum readiness, cryptographic posture management and PKI/PQC compliance.
It builds PKI and digital certificate-based security products - secure email, password-less authentication, IoT identity and unified communications - and automates certificate lifecycle management, including post-quantum readiness.
Lawrence Hughes, co-founder of CipherTrust, founded Sixscape in Singapore in 2014. Dean Bell serves as CEO.
IRP is Sixscape's patented protocol - assigned IANA port 4604 - that automates the request, retrieval and management of X.509 digital certificates.
Through a 100% partner-centric B2B model, licensing its software suites and IDcentral platform via system integrators, resellers and certificate authorities to enterprise, government and service-provider customers.
It offers crypto-agile, PQC-ready certificate lifecycle management and post-quantum readiness assessments so enterprises can migrate to quantum-safe algorithms as standards mature.
Profile compiled from public sources including sixscape.com, the PKI Consortium, Tembusu ICT Fund announcements and partner directories. Figures such as growth rates and deployment times are per company statements and approximate.