About

The consultancy born at the intersection of behavioral economics and human experience.

RENÉ STUDIO

The CX design platform we built from a decade of client work.

Open rene.cx ↗
NOW HIRING

Join a team reshaping how the world experiences brands.

View open roles →

COMPANY

GROW WITH US

CONNECT

Services

Comprehensive CX and management consulting for enterprise brands.

RENÉ STUDIO

Every engagement, mapped and scored in one AI workspace.

Open rene.cx ↗
ALL SERVICES

Explore the full range of CX & management consulting services.

Browse all services →

CORE

SPECIALIST

Solutions

Structured solutions that turn CX ambition into measurable outcomes.

RENÉ STUDIO

Map, score and fix the journeys we redesign, with AI.

Open rene.cx ↗
ALL SOLUTIONS

Explore every CX solution we offer.

Browse solutions →

STRATEGY & GOVERNANCE

DESIGN & DELIVERY

CULTURE & EXPERIENCE

Industries

A decade of CX transformation across the region's defining sectors.

RENÉ STUDIO

Sector-ready journeys, scored by AI in minutes.

Open rene.cx ↗
ALL INDUSTRIES

See how we work across every sector.

Browse industries →

BUILT ENVIRONMENT

FINANCE & TECH

PEOPLE & MOBILITY

Products

Proprietary tools, platforms, and AI that power CX transformation.

RENÉ STUDIO

Design, score and fix customer journeys with AI.

Open rene.cx ↗
REBELDECK A · 36 FORCES

The forces that shape how humans experience the world.

Explore REBEL Reveal →
ALL PRODUCTS

Explore the full Renascence product ecosystem.

Browse products →

AI & TECHNOLOGY

LEARNING & GAMES

PLATFORMS & TOOLS

CX TOOLKIT

Opinion

Insights, research, and conversations at the frontier of CX.

RENÉ STUDIO

Turn what you read into a journey you can score.

Open rene.cx ↗
ReadExperience JournalArticles & research on CX, behavior, and transformation.Watch & listenExperience LoomOur video podcast on CX & behavior.CuratedCX NewsIndustry news that matters in CX, minus the noise.

Latest articles

Latest episodes

Latest news

Hub

Free tools, templates, and resources to advance your CX practice.

RENÉ STUDIO

Design, score and fix customer journeys with AI.

Open rene.cx ↗
THE MANIFESTOBurn the Deck.
Ten Virtues. Zero Excuses.Start reading →
THE HUB

Every free tool, template and resource in one place.

Visit the Hub →

AI TOOLS

FREE TOOLS

LEARNING

CULTURE

GovTech · 8 October 2026

GAO: No US federal agency fully post-quantum crypto ready

A GAO audit of 24 US federal agencies found none had fully implemented recommended post-quantum cryptography practices, highlighting a government-wide gap in preparing for future quantum computing threats.

Newsdesk
Curated briefing · 2 min read

What happened

The US Government Accountability Office has found that none of the 24 federal agencies it reviewed had fully implemented a set of recommended practices for preparing their IT systems against future quantum computing threats. The watchdog's audit assessed how agencies are progressing on post-quantum cryptography (PQC) readiness, the process of migrating systems to encryption standards designed to withstand attacks from sufficiently powerful quantum computers.

According to the report, every agency examined had gaps against the selected PQC practices, pointing to a government-wide shortfall in preparing critical systems for a threat that cybersecurity experts expect to materialise as quantum computing matures.

Why it matters

Post-quantum cryptography migration is one of the more consequential, if under-the-radar, digital transformation challenges facing large organisations. Quantum computers capable of breaking current encryption standards are not yet operational at scale, but the transition work — inventorying systems, prioritising sensitive data, and swapping in quantum-resistant algorithms — takes years. Agencies and enterprises that delay risk being caught exposed once the technology arrives, particularly for data that needs to stay protected for long periods, such as health, financial or national security records.

For technology and transformation leaders more broadly, the finding underscores a recurring pattern: emerging-risk readiness tends to lag behind awareness. Knowing a threat is coming is not the same as having a funded, sequenced plan to address it, and the GAO's findings suggest many organisations have yet to close that gap.

By the numbers

  • 24 federal agencies were audited by the GAO on post-quantum cryptography readiness.
  • Zero of those agencies had fully addressed the selected PQC practices assessed in the review.

The Renascence take

It is tempting to read this as a story about cryptography. It is really a story about how organisations sequence long-horizon risk against short-term delivery pressure — a service-design and operating-model problem as much as a technical one.

Quantum-readiness is the ultimate test of whether an institution can act on a threat it cannot yet see or feel. The lesson here is not "encrypt faster" — it's that organisations consistently under-invest in risks with long lead times and no immediate customer complaint attached to them. The agencies and enterprises that get ahead of this will be the ones that treat PQC migration as a standing transformation workstream with its own governance and budget line, not a future problem to revisit once the threat becomes tangible. By then, for anything requiring long-term data confidentiality, it will already be too late to matter.

Sources

This briefing was written by our Newsdesk, synthesising reporting from the outlets below. Follow the links for the original coverage.

FAQ

Questions we get on this topic

The US Government Accountability Office reviewed 24 federal agencies and found that none had fully implemented the recommended post-quantum cryptography practices assessed in the audit.

It is the process of moving IT systems from current encryption standards to new algorithms designed to withstand attacks from sufficiently powerful quantum computers, a transition that involves inventorying systems and prioritising sensitive data.

Because PQC migration takes years to complete, and data requiring long-term confidentiality — such as health, financial or national security records — could be exposed once capable quantum computers emerge if agencies delay preparation now.

Zero of the 24 agencies audited had fully addressed the selected post-quantum cryptography practices assessed in the report.

Stay ahead of CX

Get the signal, not the noise.

The stories shaping customer experience — plus the Journal and Experience Loom — in your inbox.