OFICIAL Google Cloud Blog

PQC in Plaintext: Google Cloud’s post-quantum cryptography roadmap

What happened
Based on Google Cloud Blog · Aug 11, 2026

Google Cloud outlines a 2029 roadmap to migrate all services to post-quantum cryptography (PQC), prioritizing protection against future quantum decryption threats and digital forgery while enabling cryptographic agility.

PQC in Plaintext: Google Cloud’s post-quantum cryptography roadmap
Google Cloud Blog — Google
Key points
·
Securing infrastructure and services against a future cryptographically-relevant quantum computer has been a goal for Google for a decade, and we’ve dedicated ourselves to help developers by advancing open standards that can benefit everyone.
·
As post-quantum cryptography (PQC) has matured, we’ve been rolling it out in its infrastructure for internal and customer-facing services.
·
Today, the company is sharing its updated Google Cloud roadmap to migrate to PQC by 2029.
·
Ensuring integrity against forgery: Strengthening digital signatures to prevent attackers from falsifying data and identity.

Google Cloud has announced a phased migration to post-quantum cryptography (PQC) by 2029, addressing risks from quantum computers capable of decrypting today’s encrypted data. The strategy targets three priorities: mitigating 'Store Now, Decrypt Later' threats, preventing digital signature forgery, and building flexible systems for future cryptographic updates. The roadmap aligns with evolving standards like CNSA 2.0 and NIST IR 8547, which outline timelines for phasing out vulnerable algorithms between 2030 and 2035.

Key milestones include the deployment of quantum-safe key exchange at Google Cloud API endpoints such as google.com and *.googleapis.com, using NIST-standardized ML-KEM (FIPS 203) in hybrid mode. Application and proxy load balancers now support quantum-safe hybrid key exchange (X25519MLKEM768) for TLS 1.3, available initially on an opt-in basis to minimize disruption. Google is also collaborating with the IETF PLANTS Working Group to develop PKI standards that reduce operational impacts, with experiments underway using Merkle Tree Certificates alongside partners like Chrome and Cloudflare.

Google Cloud Key Management Service (KMS) now offers NIST-standardized PQC algorithms—ML-KEM, ML-DSA, and SLH-DSA—available for general use in encryption and signing keys. The company has established customer-focused journeys to prioritize quantum readiness, focusing on high-risk scenarios identified by security experts. These initiatives aim to secure core user journeys, including quantum-confidential TLS 1.3 handshakes for services and load balancers, as well as protecting administrator and developer workflows via tools like Cloud VPN, Interconnect, and the open-source cryptographic library Tink.

The migration effort extends beyond 2029, with Google planning to support broader industry guidance and evolving global standards into the 2030s. The company emphasizes cryptographic agility, enabling services to adopt new standards with minimal engineering effort. While most services are projected to meet their target completion dates, timelines may adjust based on engineering requirements and third-party dependencies, ensuring a measured and scalable transition to quantum-safe infrastructure.

Original source → Deals on Clipraptor.com →