← All countries

Poland

EU roadmap Standard-taker

Poland has moved from explanatory material towards an initial national framing of its quantum-safe posture. In August 2025 the Ministry of Digital Affairs published the foundational assumptions for a national quantum-technology development policy, structured across five pillars and three phases to 2035 and explicitly naming post-quantum security and post-quantum cryptography among its priorities. NASK, the national research institute and CSIRT operator, presents post-quantum cryptography and quantum key distribution as responses to the quantum threat, and the National Institute of Telecommunications (Instytut Lacznosci, IL-PIB) has produced introductory material, run seminars on post-quantum digital-signature standards, and committed to a security assessment of post-quantum cryptography solutions over 2026 to 2030. No binding national post-quantum migration mandate with dated algorithm-specific deadlines is yet attested; migration obligations rest on the EU framework and its coordinated roadmap.

Governance credibility

Governance credibility for PolandA six-axis reading out of two: Relevance 2.0 / 2, Coherence 2.0 / 2, Effectiveness 1.5 / 2, Efficiency 2.0 / 2, Governance 2.0 / 2, Impact 2.0 / 2.RelCohEffEff.GovImp
Governance credibility scores for Poland, each out of two. Hover or focus a row to highlight its axis.
CriterionScoreConfidence
Relevance2.0 / 2High
Coherence2.0 / 2High
Effectiveness1.5 / 2High
Efficiency2.0 / 2High
Governance2.0 / 2High
Impact2.0 / 2High

Regulatory basis

  • NIS2 Directive (EU) 2022/2555, Art. 21(2)(h) EU Binding law
  • DORA, Regulation (EU) 2022/2554 (financial sector) EU Binding law
  • Commission Recommendation (EU) 2024/1101 on a coordinated PQC roadmap EU Soft law
  • NIS Cooperation Group Coordinated Implementation Roadmap (2026/2030/2035) EU Soft law

Essential and important entities must use state-of-the-art cryptography under NIS2, transposed into national law, and financial entities face equivalent duties under DORA; neither yet names post-quantum algorithms specifically. Migration follows the EU coordinated roadmap, with high-risk use cases targeted for 2030 and full migration by 2035, which is encouraged rather than mandated.

Standards and algorithms

Standard families
NIST FIPS 204, FIPS 205
Algorithms
ML-DSA, SLH-DSA

Hybrid stance

None stated

Migration timeline

today
2026
2030
2035
20252036
  1. 2026National Institute of Telecommunications (IL-PIB) begins a security assessment of post-quantum cryptography solutions (2026-2030 outlook)
  2. 2030High-risk use cases migrated (EU coordinated roadmap)
  3. 2035Full migration of all systems complete (EU coordinated roadmap); national quantum-technology policy phases run to 2035

Target completion: 2035

International standards processes

  • NIS Cooperation Group co-authored the EU coordinated PQC roadmap

Governmental and standards bodies

Key institutional documents

Advising on this transition, or your own sector's? Request a briefing →