Germany
EU roadmap Standard-contextualiserGermany's posture is led by the BSI, the Federal Office for Information Security, whose technical guideline TR-02102 sets the recommended algorithms and the migration path. In its 2025 and 2026 updates the BSI extended these recommendations to the quantum threat and, for the first time, fixed end-of-life dates for classical asymmetric cryptography, to be replaced by hybrid post-quantum schemes: no sole use of classical asymmetric encryption beyond end 2031, end 2030 for highly sensitive applications, and classical signatures phased out by end 2035. Deadlines have also been agreed for migrating classified government IT, and a national project plan for the transition is being drawn up. The work is coordinated with seventeen other EU member states and the EU quantum-safe roadmap, and the Federal Government set a goal of initiating migration in security-critical areas by 2026. The BSI recommends hybrid solutions and a conservative algorithm set, and its president has described the transition to post-quantum cryptography as without alternative.
Governance credibility
| Criterion | Score | Confidence |
|---|---|---|
| Relevance | 2.0 / 2 | High |
| Coherence | 2.0 / 2 | High |
| Effectiveness | 1.5 / 2 | High |
| Efficiency | 2.0 / 2 | High |
| Governance | 2.0 / 2 | High |
| Impact | 2.0 / 2 | High |
Regulatory basis
- NIS2 Directive (EU) 2022/2555, Art. 21(2)(h)
- DORA, Regulation (EU) 2022/2554 (financial sector)
- BSI TR-02102 technical guidelines (now setting dated end-of-life deadlines for classical asymmetric cryptography)
- BSI migration roadmap and recommendations
Legal status: Binding
Essential and important entities must use state-of-the-art cryptography under NIS2; the BSI technical guidelines (TR-02102) set the recommended algorithms and hybrid deployment that public-sector procurement and certification follow, though the guidelines are not themselves statute.
Standards and algorithms
- Standard families
- BSI TR-02102
- Algorithms
- ML-KEM, ML-DSA, SLH-DSA, FrodoKEM, Classic McEliece, XMSS, LMS
Hybrid stance
Recommended
Migration timeline
- 2026Federal Government goal to initiate migration in security-critical areas
- 2030Highly sensitive applications: classical asymmetric encryption no longer used on its own; high-security applications migrated
- 2031Classical asymmetric encryption no longer used on its own
- 2035Classical signatures phased out
Target completion: 2035
International standards processes
- NIS Cooperation Group co-authored the EU coordinated PQC roadmap
- EU PQC working group (BSI with 17 other member states) co-signed the joint call and statement to transition to post-quantum cryptography
Governmental and standards bodies
- BSI Federal Office for Information Security, sets national cryptographic recommendations
- Bundesregierung Federal Government, set the action plan for quantum technologies and the goal to initiate migration in security-critical areas
- Bundestag Federal parliament, reported the planned national PQC roadmap and project plan
- Bundesrat Federal Council, addressed obligations to adopt PQC migration concepts in national cybersecurity strategies
- Bundesbank German central bank, set out the quantum threat to banking and the 2026 migration goal
- BMBF Federal research ministry, funds bringing post-quantum cryptography into application
Key institutional documents
- Project Leap proves the viability of a quantum-safe financial system
- Hightech Agenda Deutschland – Quantentechnologien (technology roadmap dossier)
- Bundestag printed paper 21/765: Kleine Anfrage on the quantum-computer threat to encryption
- Bundestag printed paper 21/5183: Kleine Anfrage on the reorientation of cybersecurity research
- Bundestag printed paper 21/3915: Federal Government answer on the Hightech Agenda, covering the national post-quantum cryptography roadmap
- Kryptografie quantensicher gestalten – Grundlagen, Entwicklungen, Empfehlungen
- Migration to Post Quantum Cryptography – Recommendations for action by the BSI
- Post-Quanten-Kryptografie: BSI veröffentlicht Handlungsempfehlungen
- Risiken im Fokus 2026 – Trend 1: Digitalisierung (Quantum Computing: Post Quantum Cryptography rückt in den Fokus)
- #nis2know: Kryptografische Verfahren – Konzepte und Prozesse
- C5:2026 Criteria Catalogue (Cloud Computing Compliance Criteria Catalogue)
- Sicheres Cloud-Computing: BSI veröffentlicht C5:2026
- BSI erweitert kryptographische Empfehlungen mit Blick auf Quantencomputer
- BSI empfiehlt Ende klassischer asymmetrischer Verschlüsselungsverfahren
- Bundestag printed paper on the PQC roadmap (DIP full text)
- BSI TR-02102-2 Cryptographic mechanisms: recommendations on TLS
- PQC update from BSI: policies, activities and roadmap (presentation)
- Federal Report on Research and Innovation 2020
- Digital. Secure. Sovereign. (IT security research framework programme)
- Research programme quantum systems
- Agenda for cybersecurity research
- Federal Government action plan for quantum technologies (Handlungskonzept)
- Bringing post-quantum cryptography into applications (funding call)
- Looking ahead: how will quantum computing change banking? (speech)
- Bundesrat printed paper 166/24 on post-quantum cryptography
- Bundesrat session 1065 explanatory note on PQC migration in national cybersecurity strategies
- Bundestag printed paper 20/8104 on post-quantum cryptography readiness
- Bundestag printed paper 21/2526 on the transition to quantum-safe cryptography
- Government plans roadmap for post-quantum cryptography
- BSI TR-02102-1 Cryptographic mechanisms: recommendations and key lengths
- Position paper on quantum key distribution
- Post-quantum cryptography (topic page)
- BSI and partners from 17 other EU member states demand transition to post-quantum cryptography
- Cooperation group publishes EU roadmap for quantum-safe cryptography (press release)
- Transition deadlines agreed for post-quantum cryptography in classified IT (VS-IT)
- Transitioning to Post-Quantum Cryptography (joint statement)
- Quantum technologies and quantum-safe cryptography (topic page)
Advising on this transition, or your own sector's? Request a briefing →