Two US agencies opened parallel post-quantum cryptography programs. The General Services Administration is modernizing federal identity systems, and the Treasury Department is steering the financial sector's transition. Both moves trace to OMB Memorandum M-26-15 and Executive Order 14412.
The GSA side
The GSA is updating the FICAM framework, the standard governing federal identity and access. The work includes physical access control systems, a category often overlooked in migration planning. The agency is expanding post-quantum cryptography testing for access cards and building entries.
The Treasury side
Treasury formed a Quantum-Readiness Task Force for the financial sector. The group addresses sector alignment, supply chain readiness, and risks to digital assets. Banks and payment systems run on public-key cryptography, so a cryptographically relevant quantum computer would threaten signatures and key exchange across the financial stack.
Why two agencies at once
Federal agencies follow the same deadline pressure. OMB M-26-15 sets migration milestones, and Executive Order 14412 requires agencies to inventory and replace vulnerable systems. Running identity modernization and financial-sector readiness in parallel covers both the government's own systems and the private infrastructure it regulates.
Reading the announcement
The initiatives are policy directions, not completed migrations. A task force and an updated framework are planning artifacts. The test is whether agencies meet the inventory and replacement deadlines in the OMB memo.
For the technical background, see our post-quantum cryptography guide.