Not sure if I'm missing something, but have they interviewed two people who were extremely influential in cryptography and a third guy who... once worked at Bell Labs and is the CEO of a startup company?
Or put another way, a puff piece.
This looks basically like a paid for article you'd see in NY Times Bits section. What's odd about it is that it's on IEEE's site. I don't look at that often, but I suppose I'd hope it wouldn't be sort of shilling startups.
I could see Martin Hellman being relevant, maybe. But there's no real substance in this piece, certainly not from Jermoluk. What I got out of it is that PKI is the answer. As I think DNS-based PKI is the answer, I think he's not too far, but he's probably selling something I don't need or want.
- registries and registrars run name-constrained CAs
- DNSSEC/DANE (RFC 6698 https://tools.ietf.org/html/rfc6698)