The Future of HPE Nonstop Starts Here

An exclusive interview with Henning Horst, CTO at comforte

Henning-Horst-Interview
Henning-Horst-Interview
This entry is part 2 of 2 in the series comforte Cover Story Series

comforte Cover Story Series

Crypto-Agility for HPE Nonstop Why Certificates, Keys, Secrets, SSH, and TLS Need a New Operating Model

Crypto-Agility for HPE Nonstop

Henning-Horst-Interview

The Future of HPE Nonstop Starts Here

Erfan Shadabi

Erfan ShadabiYou have been part of comforte and the Nonstop community for many years. For readers who may not know you personally, can you briefly introduce yourself?

Henning

Henning HorstI have spent most of my professional career at comforte, working closely with the Nonstop community for nearly 20 years. During that time, I have had the pleasure to meet and work with many customers, partners, and colleagues across the community, and I have been involved in the creation and introduction of several comforte solutions to the market, particularly in Nonstop security, tokenization, and data-centric protection.

Erfan Shadabi

ErfanPeople have been talking about organizations moving away from Nonstop for a long time. How do you view those discussions today?

Henning

HenningI have heard that discussion for almost my entire professional career. People were saying it as far back as 20 years ago, and yet Nonstop continues to run some of the world’s most important workloads.

I think the reason is simple: the problems Nonstop was designed to solve have not disappeared. Availability, transactional integrity, operational resilience, and trust still matter. In some industries, they matter more than ever.

But I also think the discussion has changed. The question is less, “Will Nonstop go away?” and more, “How can Nonstop continue to participate effectively in modern enterprise architectures, while preserving what makes it valuable?”

Customers already know integration matters. Many have been working hard for years to connect Nonstop to the broader enterprise as much as today’s tooling allows. The opportunity now is to strengthen Nonstop itself while making its value easier and safer to extend into modern enterprise environments.

That is where I believe the community, including vendors like comforte, can add a lot of value.

Erfan Shadabi

ErfanSome people may connect that broader market discussion with the perception that comforte’s own focus moved away from Nonstop. How do you respond to that?

Henning

HenningI can understand why that perception may have existed. Over the past several years, a lot of our visible investment and messaging was around enterprise data protection, and less of it was specifically around Nonstop.

But from our perspective, that was never a move away from Nonstop. It was a response to what customers were telling us.

Customers were not saying that Nonstop mattered less. They were telling us that the data protection challenge had become broader.

A Nonstop-only data protection approach has limited value if the same sensitive data continues to move through the rest of the enterprise. Nonstop is often where highly trusted transactional data originates. But that data flows into digital channels, core banking systems, analytics environments, cloud services, partners, reporting systems, test environments, and now AI initiatives.

We also learned that this problem cannot be solved by looking at only one side of it. If a solution has enterprise data-protection capability but does not understand the mission-critical DNA of Nonstop, integration becomes difficult and the operational reality is missed. If a solution understands only a narrow Nonstop use case but has no enterprise reach, it cannot protect the data journey end to end.

That is why we decided to bring these worlds together ourselves: our long experience with mission-critical Nonstop environments and our enterprise data-security capabilities.

Now, with TAMUNIO, that enterprise work and our Nonstop work are coming together.

Erfan Shadabi

ErfanSo would it be fair to say that comforte’s enterprise strategy is also part of its renewed Nonstop strategy?

Henning

HenningYes, exactly. Our enterprise work and our Nonstop work are not separate stories anymore. They are coming together through TAMUNIO.

TAMUNIO allows us to bring new value directly to the Nonstop platform while also helping customers protect and govern trusted Nonstop data as it moves across the broader enterprise.

So the message is very clear: comforte remains committed to Nonstop. But our commitment today is not only about preserving what we have done in the past. It is about bringing the next generation of data protection, discovery, crypto-agility, governance, and safe data use to the platform.

Erfan Shadabi

ErfanWhat do you mean by strengthening Nonstop and extending its value?

Henning

HenningNonstop customers rely on the platform because of what it does exceptionally well. These systems support workloads where availability, consistency, resilience, and trust are essential. That should remain the foundation.

At the same time, the enterprise around Nonstop keeps evolving. Security teams expect stronger governance and visibility. Data teams want to use trusted operational data in analytics and AI. Enterprise architects are looking at cloud, APIs, modern integration models, identity-based access, SIEM and SOAR integration, and automation. Regulatory and data-sovereignty requirements are also becoming more complex.

So the opportunity is twofold. First, bring new value directly to the Nonstop platform itself. That means discovery, crypto-agility, certificate lifecycle automation, stronger governance, keys and secrets management, SSH and TLS modernization, and post-quantum readiness. Second, help customers safely extend trusted Nonstop data and capabilities into the broader enterprise.

That is the balance: preserve what makes Nonstop valuable, while making it easier to connect that value to the future of enterprise security, data, and AI.

Erfan Shadabi

ErfanWhat is TAMUNIO, and how does it fit into this strategy?

Henning

HenningTAMUNIO is the platform expression of where comforte is taking data security and safe data use.

The customer problem has changed. Sensitive data no longer lives in one place. It moves from core systems into APIs, digital channels, core banking platforms, analytics environments, cloud services, partner ecosystems, test environments, and AI workflows. That means customers need more than isolated protection in one system. They need to discover, protect, govern, and safely use sensitive data across its journey.

That last point is important. Data protection should not only be seen as a control. Done properly, it enables organizations to use data more confidently to support business objectives: better analytics, safer AI adoption, stronger compliance, improved customer experiences, and more flexible digital services.

That is the idea behind TAMUNIO.

It brings together capabilities such as discovery, classification, tokenization, encryption, key management, certificate management, secrets management, access, monitoring, governance, integration, and modernization.

For Nonstop customers, the important point is that the enterprise and Nonstop stories are no longer separate. TAMUNIO brings new security, discovery, crypto-agility, and governance value directly to the Nonstop platform, while also helping customers use trusted Nonstop data safely across the broader enterprise.

Erfan Shadabi

ErfanWhat should the Nonstop community take from the latest TAMUNIO developments?

Henning

HenningThe important point is that TAMUNIO is already delivering value for the Nonstop community.

With the initial TAMUNIO release, we delivered substantial platform value for Nonstop environments. This includes next-generation data-centric protection services, quantum-safe protection, multi-factor authentication, extended transparent integrations across the stack from core systems to AI, and unified monitoring and auditing. So this is not just a future roadmap, a rebranding exercise, or a statement of intent.

With TAMUNIO Assure and TAMUNIO Discover, we are building on that foundation in two complementary ways. Assure expands cryptographic trust and crypto-agility for Nonstop. Discover adds visibility into sensitive data, cryptographic assets, and related configuration files — helping customers understand what needs to be protected, governed, and managed.

So I would not describe Assure and Discover as the beginning of TAMUNIO value for Nonstop. They are the next step. The initial TAMUNIO release already created substantial value, and these new packages show where we are taking the platform next.

And importantly, there is more to come.

Erfan Shadabi

ErfanAI is now part of almost every technology discussion. What does it mean specifically for Nonstop environments?

Henning

HenningFor Nonstop, I think the AI discussion is a simple one.

AI depends on high-quality, trusted data, and in many enterprises Nonstop is one of the core systems that can provide exactly that. Nonstop environments often process highly valuable transactional and operational data: payments, account activity, customer interactions, authorizations, fraud signals, and other business-critical events.

That data can be extremely valuable for AI use cases such as fraud detection, risk scoring, customer intelligence, service automation, operational analytics, and better decision-making.

So AI does not make Nonstop less relevant. In many cases, it makes trusted Nonstop data more valuable.

The challenge is how to use that data safely. Much of it is sensitive, regulated, or subject to strict governance. Organizations cannot simply copy raw sensitive data into every analytics or AI environment. They need a way to discover it, protect it, govern access to original values, and enable AI systems to work with protected or tokenized data where possible.

That is why I see Nonstop as part of the AI story. It can remain a trusted system of record while also becoming a trusted source of protected, high-value data for the AI-driven enterprise.

Erfan Shadabi

ErfanMany organizations struggle to use sensitive data in AI. How can data protection help?

Henning

HenningOne of the biggest blockers for AI adoption is not the model. It is the ability to use the right data safely.

The most useful data for AI is often sensitive data: customer data, payment data, account data, transaction histories, fraud signals, behavioral data, and operational records. If organizations cannot use that data safely, AI initiatives become limited. Teams either avoid the most valuable data, use lower-value datasets, or take on risk that security, privacy, and compliance teams are not comfortable with.

That is where tokenization and data-centric protection become very important.

With proper tokenization, organizations can protect sensitive values while preserving the usefulness of the data for legitimate business purposes. AI environments do not always need access to raw sensitive data to create business value. In many cases, they can work with protected, de-identified, or tokenized data, while access to the original values remains governed and controlled.

This changes the role of data protection. It is not only a defensive control. Done properly, it becomes an enabler of innovation.

For Nonstop customers, this is especially relevant because Nonstop often holds or generates exactly the kind of trusted transactional data that AI initiatives want to use. Protecting that data at the source, or protecting it transparently as it moves downstream, allows organizations to innovate more safely.

Erfan Shadabi

ErfanHow does the core banking environment fit into this data-protection story?

Henning

HenningCore banking is a very good example because it shows how sensitive data moves across the enterprise.

In many financial institutions, highly trusted transactional data may originate on Nonstop or another core system, but it does not stay there. It flows into core banking platforms such as Temenos, Avaloq, and others. It then continues into digital channels, fraud systems, reporting environments, analytics platforms, cloud services, partner ecosystems, and increasingly AI use cases.

That is why data protection has to be thought of across the journey. If you protect the data only in one system, but the same sensitive values appear elsewhere in clear form, the risk has simply moved.

The important question is not only, “Is this system protected?” The question is, “Can we protect and govern sensitive data as it moves through the business process?”

That is the broader platform problem we are solving with TAMUNIO.

Erfan Shadabi

ErfanWhere does data sovereignty fit into this discussion?

Henning

HenningData sovereignty is part of the broader data-flow discussion, not only an AI topic.

Many Nonstop environments are involved in payment processing, banking, and other mission-critical services that operate across multiple jurisdictions. Sensitive data may be created or processed on Nonstop, but then move into regional systems, core banking platforms, fraud systems, analytics environments, partners, processors, cloud services, or AI use cases.

That raises important questions. Where does the sensitive data reside? Which systems or jurisdictions can access original values? Can downstream environments work with protected data instead of clear sensitive data? Can the organization prove that access to original values is controlled?

This is where tokenization and data-centric protection become powerful. If sensitive values are protected at the source, or before they leave a governed environment, organizations can reduce the exposure of original data while still allowing business processes to operate across systems and regions.

So data sovereignty is not separate from data protection. It is one more reason why protection needs to follow the data across the enterprise.

Erfan Shadabi

ErfanLet’s talk about cryptography. Why is this becoming such an important topic for Nonstop customers?

Henning

HenningCryptography is becoming an operational topic, not just a technical one.

Nonstop customers rely on SSH, TLS, certificates, keys, and secrets to protect mission-critical systems and secure connectivity. If those elements are not managed properly, the impact can go beyond security. It can affect availability, compliance, auditability, and resilience.

There are also larger market changes happening. Certificate lifetimes are getting shorter, security teams expect more automation and governance, and post-quantum cryptography is moving from theory into planning. For organizations that handle sensitive, long-lived data, the harvest-now, decrypt-later risk means this is something they need to start preparing for now.

For Nonstop environments, cryptographic change cannot be improvised. These systems support mission-critical workloads. That means customers need a deliberate path toward crypto-agility: understanding where cryptography is used, how keys and certificates are managed, where secrets are stored, and how quickly they can adapt when requirements change.

Erfan Shadabi

ErfanWhat is the significance of TAMUNIO Assure in that context?

Henning

HenningTAMUNIO Assure is our answer to that broader cryptographic trust challenge on Nonstop.

It brings certificate lifecycle automation and crypto-agility to the platform, but it is not limited to certificate rotation and it is not limited to comforte products. Assure is designed as a broader Nonstop capability that can help protect and manage certificates, keys, secrets, and sensitive files across the Nonstop software estate.

That is important because real customer environments are not built around a single product. They include applications, utilities, vendor software, scripts, integration components, and operational processes. The trust model has to work across that landscape.

Assure also respects the Nonstop operating model. It can operate independently of enterprise dependencies, which is essential for local resilience. And at the same time it supports enterprise integration, including ACME support, for customers who want to connect certificate lifecycle processes into their broader security architecture.

The detailed technical considerations are exactly what we cover in the dedicated TAMUNIO Assure article. But the strategic message is simple: Nonstop customers need a complete, resilient, and crypto-agile operating model for cryptographic trust.

Erfan Shadabi

ErfanWhat would you like the Nonstop community to take away from comforte’s current direction?

Henning

HenningI would like the community to see that comforte believes strongly in the future of Nonstop.

But believing in the future of Nonstop does not mean only preserving what exists today. It means helping the platform continue to fit into the future of enterprise technology.

That future includes enterprise-wide data protection, AI, cloud, analytics, APIs, stronger security operations, post-quantum readiness, data sovereignty, and modern governance. Nonstop has a role in that future because it continues to run systems and generate data that matter.

TAMUNIO is central to that direction. It brings together the next generation of comforte capabilities and allows us to deliver more value directly to the Nonstop platform, while also helping customers extend trusted Nonstop data and capabilities across the enterprise.

So the message is simple: we are committed to Nonstop, we are already delivering substantial new value through TAMUNIO, and there is more to come.

Erfan Shadabi

ErfanIf you had to summarize comforte’s message to the Nonstop community in one sentence, what would it be?

Henning

Henningcomforte believes strongly in the future of Nonstop, and TAMUNIO is how we are bringing new value directly to the platform while helping customers safely extend trusted Nonstop data and capabilities into the modern enterprise, multi-jurisdictional business processes, and AI landscape.

comforte Cover Story Series

Crypto-Agility for HPE Nonstop

Authors

  • henning-horst-profile

    Henning Horst is the Chief Technology Officer of comforte and was appointed to this position in October 2019. Before this, Henning Horst held various other positions at the company, including System Analyst, Solutions Architect, Senior Vice President Security, and Director Research and Development.

    View all posts
  • Erfan_Shadabi-comorteAG

    Head of Marketing at comforte AG, focused on cybersecurity and data protection. I help organizations reduce risk, secure sensitive data, and empower teams to operate with confidence in an increasingly complex threat landscape.

    View all posts
Nonstop Technology & Business Conference 2026-light
N2NS-horizontal banner
2025-FLIT -winners (1)

Be the first to comment

Leave a Reply

Your email address will not be published.


*


This site uses Akismet to reduce spam. Learn how your comment data is processed.