← All countries

Romania

EU roadmap Standard-taker

Romania's posture is led by the DNSC, whose guide on the transition to post-quantum cryptography points organisations to the NIST-standardised algorithms while noting that they are mathematically validated but still lack operational maturity, and stresses crypto-agility. The government has adopted a national strategy on quantum technologies covering post-quantum cryptography, and an EU-funded call supports integrating post-quantum algorithms into high-level protocols. In 2026 the National Authority for Research announced the launch of RExQTCS, a centre of excellence coordinated by Politehnica University of Bucharest that links frontier research in classical and post-quantum cryptography to communications security. No fixed national migration deadline has been published.

Governance credibility

Governance credibility for RomaniaA six-axis reading out of two: Relevance 2.0 / 2, Coherence 2.0 / 2, Effectiveness 1.5 / 2, Efficiency 2.0 / 2, Governance 2.0 / 2, Impact 2.0 / 2.RelCohEffEff.GovImp
Governance credibility scores for Romania, each out of two. Hover or focus a row to highlight its axis.
CriterionScoreConfidence
Relevance2.0 / 2High
Coherence2.0 / 2High
Effectiveness1.5 / 2High
Efficiency2.0 / 2High
Governance2.0 / 2High
Impact2.0 / 2High

Regulatory basis

  • NIS2 Directive (EU) 2022/2555, Art. 21(2)(h) EU Binding law
  • DORA, Regulation (EU) 2022/2554 (financial sector) EU Binding law
  • Commission Recommendation (EU) 2024/1101 on a coordinated PQC roadmap EU Soft law
  • NIS Cooperation Group Coordinated Implementation Roadmap (2026/2030/2035) EU Soft law

Essential and important entities must use state-of-the-art cryptography under NIS2, transposed into national law, and financial entities face equivalent duties under DORA; neither yet names post-quantum algorithms specifically. Migration follows the EU coordinated roadmap, with high-risk use cases targeted for 2030 and full migration by 2035, which is encouraged rather than mandated.

Standards and algorithms

No standards or algorithms specified.

Hybrid stance

None stated

Migration timeline

today
2030
2035
20252036
  1. 2030High-risk use cases migrated
  2. 2035Full migration of all systems complete

Target completion: 2035

International standards processes

  • NIS Cooperation Group co-authored the EU coordinated PQC roadmap

Governmental and standards bodies

Key institutional documents

Advising on this transition, or your own sector's? Request a briefing →