Google Cloud has published an updated roadmap for migrating its infrastructure to post-quantum cryptography (PQC), targeting full readiness by 2029, with some work expected to continue into the next decade.
In March, Google announced it was moving up its timeline for transitioning to PQC, setting a 2029 target after faster-than-expected advances in quantum hardware and error correction.
The tech giant announced this week that the plan, built around its own Quantum Threat Model, organizes work into three priority areas: mitigating Store Now Decrypt Later (SNDL) risk, strengthening digital signatures against forgery, and building the cryptographic agility needed to adopt new standards as they emerge.
Several milestones are already in place. Google Cloud’s API endpoints, including google.com and googleapis.com, now use NIST-standardized ML-KEM key exchange in hybrid mode. Application and proxy load balancers support quantum-safe hybrid key exchange for TLS 1.3 on an opt-in basis, allowing customers to validate the change in their own environments.
In addition, cloud KMS has also reached general availability for NIST-standardized PQC algorithms covering both key exchange and digital signatures.








