# NIST and EU Set Post-Quantum Crypto Deadlines

Utimaco emphasizes the urgent need for government and enterprise organizations to evaluate their cryptographic dependencies in light of the National Institute of Standards and Technology (NIST) finalizing post-quantum cryptography standards in 2024 and the European Union establishing migration deadlines. Procurement professionals should prioritize acquiring crypto-agile hardware security modules and developing phased migration plans to ensure compliance and data security against emerging quantum threats.

- Agencies must assess the lifespan of sensitive data and the time required to transition to post-quantum cryptographic algorithms to meet NIST and EU timelines.
- Procurement strategies should incorporate hardware security modules capable of supporting crypto agility to facilitate seamless upgrades.
- This development signals increased demand for vendors specializing in quantum-resistant cryptographic solutions, presenting opportunities for cybersecurity contractors.
- Organizations should align procurement planning with evolving standards to mitigate risks associated with quantum computing advances.

**Jurisdictions:** federal
**Industries:** Information Technology
**Topics:** Cybersecurity
**Published:** September 25, 2026

### Government Entities
- National Institute of Standards and Technology (NIST)
- European Union (EU)

### Vendors
- Utimaco (provider of cybersecurity and compliance solutions, specializing in hardware security modules)

### Sources
- [Utimaco Says Quantum Crypto Dependency Knowledge Is Step One](https://quantumzeitgeist.com/quantum-crypto-dependency-utimaco-knowledge) - Quantum Zeitgeist