Bidda Sovereign Intelligence · 10,099 Verified Nodes · 39 Sovereign Pillars

Roadmap for the Migration to Post-Quantum Cryptography for the Government of Canada (ITSM.40.001)

The Canadian Centre for Cyber Security published ITSM.40.001, Roadmap for the migration to post-quantum cryptography for the Government of Canada, on 23…

What Roadmap for the Migration to Post-Quantum Cryptography for the Government of Canada (ITSM.40.001) requires

The Canadian Centre for Cyber Security published ITSM.40.001, Roadmap for the migration to post-quantum cryptography for the Government of Canada, on 23 June 2025. It sets dated obligations for federal departments and agencies rather than general advice. Departments are to develop an initial departmental PQC migration plan by April 2026, and to report on PQC migration progress from April 2026 onwards on an annual basis. Two completion milestones follow. Migration of high priority systems is to be completed by the end of 2031, and migration of the remaining systems by the end of 2035. The structure separates planning and reporting from execution, and separates high priority systems from the remainder, so that departmental progress is measurable at each stage rather than only at the end. The instrument applies to Government of Canada departments and agencies and their IT systems; organisations outside that perimeter may use it as a reference model but are not bound by it.

Pillar: Aviation, Defense & Quantum · Authority: Canadian Centre for Cyber Security · Version: 1.0.0 · Last updated:

Primary source: https://www.cyber.gc.ca/en/guidance/roadmap-migration-post-quantum-cryptography-government-canada-itsm40001

SHA-256 integrity: a796252ab47aa08aef9666b7f6facf79ded0ceebec4c55514ef9d503ab045ae2

Primary Citations — 6 traced to source

+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.