Rail Cybersecurity is a Journey, Not a Product
Rail Cybersecurity is a Journey, Not a Product
Introduction: More than cybersecurity mandates
Long before the TSA issued Security Directive 1580/82-2022-01 to help reduce risks posed by cybersecurity threats on critical rail operations, rail operators proactively banded together to form the Rail Information Security Committee (RISC) and tackle cybersecurity concerns as an industry.
Yet even with this laudable head start, rail cybersecurity remains a work in progress as operators and their ecosystem partners grapple with the complexities of making a vast, mainly legacy infrastructure more resilient and secure.
A big part of the challenge, one rail shares with industrial players at large, is that implementing cybersecurity measures at scale isn’t simply an information technology (IT) problem – it’s also an operational technology (OT) one. There is no single security software vendor with a plan, patch, or solution for the extensive mix of physical and digital assets that comprise today’s rail fleets.
There is no silver bullet.
Developing and evolving the right set of cybersecurity solutions for the rail industry is going to take time and collaboration among carriers and vendors who know the industry best – and an approach rooted not simply in software acumen, but in a deep understanding of operational technology, some of which predates the Internet.
Getting started
A big part of accomplishing this task will be understanding that big fixes take time – and need to be implemented with great care. While tempting to think that bolt-on security solutions can make rail operations more ‘compliant,’ short-term fixes for challenges with long-term safety and security implications won’t cut it.
One major implication of bolt-on solutions is that they are difficult to manage and maintain, making them more costly to operate over time. The most efficient way forward is to think through the problem thoroughly up front and design solutions that will stand the cybersecurity test of time.
“Railroads have a lot on their plates when it comes to cybersecurity,” says Susan Peterson Sturm, Senior Director, Cyber Product and Strategic Partnerships at Wabtec. “The TSA is mandating security capabilities that aren’t organic to the original physical and digital assets in their networks, and the security stack that is emerging now for the enterprise isn’t suited to the realities and rigors of rail operations. That said, the rail industry is experienced at rolling up its sleeves and working with its partners to meet big challenges. Just look at what we accomplished together in developing Positive Train Control (PTC).”
Receive articles like this
Roles you might be interested in
Salary
Location
Cleveland, OH, United States
Location
Cleveland
Time Type
Full - Time
Remote Type
On site
Job Family
Legal & Compliance
Description
*** THIS JOB IS BASED IN PITTSBURGH, PA ***Who will you be working with?Chief Compliance Officer (Manager), CISO, Legal, Information Security, IT, HR, Procurement, and business leadersHow will you mak
Reference
fdc63f2c-ac49-49fc-a20c-23b3de412762
Expiry Date
01/01/0001
Salary
Location
Monterrey, N.L., Mexico
Location
Monterrey
Time Type
Full - Time
Remote Type
On site
Job Family
Legal & Compliance
Description
Who will you work with?As part of our International Trade Compliance Leadership team, you will be focused on facilitating compliance with customs and export control laws and regulations while supporti
Reference
fb71fbfd-aede-4333-9be4-f5dcae7fd368
Expiry Date
01/01/0001
Salary
Location
Guadalajara, Jal., Mexico
Location
Guadalajara
Time Type
Full - Time
Remote Type
On site
Job Family
Legal & Compliance
Description
Who will you work with?As part of our International Trade Compliance Leadership team, you will be focused on facilitating compliance with customs and export control laws and regulations while supporti
Reference
8f98e0aa-50f4-4073-b31e-61977c2f76dd
Expiry Date
01/01/0001
Salary
Location
Wilmerding, PA, United States
Location
Wilmerding
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
Who will you be working with?Wabtec Freight Car Products is a leader in the design and manufacture of freight car pneumatic brake equipment and corresponding automated test equipment. Products are use
Reference
927dffd7-9672-4048-a83c-aa814b62cc69
Expiry Date
01/01/0001
Salary
Location
Houston, TX, United States
Location
Houston
Time Type
Full - Time
Remote Type
On site
Job Family
Operations
Description
Who will you be working with?The Materials & Planning Specialist owns and expedites the flow of materials (from suppliers and also within departments) according to production schedules.How will you ma
Reference
ee0b073a-be93-4f2a-8f6c-fe859a3571ed
Expiry Date
01/01/0001
Salary
Location
Quebec City, QC, Canada
Location
Qu�bec City
Time Type
Full - Time
Remote Type
Hybrid
Job Family
Administration
Description
Développeur Web Full Stack Senior (3D rendering) Evident Canada est une société du groupe Wabtec ! Evident Canada, une société du groupe Wabtec, est un chef de file mondial dans la fabrication d'équip
Reference
5720b2c9-977a-4353-b7fd-1bcfc00449d2
Expiry Date
01/01/0001
Salary
Location
Northampton, England, United Kingdom
Location
Northampton
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
Who will you be working with?You will join the Freight Components engineering and digital team, supporting several engineering sites across Europe. As a Functional PLM / Teamcenter Administrator, you
Reference
cdb22adc-71e4-488d-9e12-b2c0fd8a4a7d
Expiry Date
01/01/0001
Salary
Location
Monte Alto, SP, Brazil
Location
Monte Alto
Time Type
Full - Time
Remote Type
On site
Job Family
Operations
Description
Com quem você trabalhará?O time de Operações da Wabtec Diafrag responsável pela fabricação das peças produzidas na fábrica.Como você irá fazer a diferença?Como membro do time Operações, você será resp
Reference
ea2c02d0-1805-4c40-b9d6-f814318836ef
Expiry Date
01/01/0001
Salary
Location
Monte Alto, SP, Brazil
Location
Monte Alto
Time Type
Full - Time
Remote Type
On site
Job Family
Operations
Description
Com quem você trabalhará?O time de Operações da Wabtec Diafrag responsável pela fabricação das peças produzidas na fábrica.Como você irá fazer a diferença?Como membro do time Operações, você será resp
Reference
305b440e-63b8-4c11-a00b-6ffcd2afcb56
Expiry Date
01/01/0001
Salary
Location
San Luis Potosi, SL, Mexico
Location
San Luis Potos�
Time Type
Full - Time
Remote Type
On site
Job Family
Legal & Compliance
Description
Who will you work with?As part of our International Trade Compliance Leadership team, you will be focused on facilitating compliance with customs and export control laws and regulations while supporti
Reference
25a13b84-0d7c-4b66-9e22-cf941e75576d
Expiry Date
01/01/0001
Articles you might like
Teaser
Wabtec NewsContent Type
NewsPublish date
03/05/2026
Summary
Wabtec Expands Locomotive Services Capabilities in India SILIGURI, West Bengal, January 15, 2026 — Wabtec Corporation (NYSE: WAB) and Indian Railways celebrated the start of locomotive service opera
Teaser
Wabtec NewsContent Type
ArticlesPublish date
11/11/2025
Summary
Wabtec to Expand Operations and Workforce in Brazil with R$20 Million InvestmentCONTAGEM, MG (11/05/25) – Wabtec Corporation (NYSE: WAB) is investing R$20 million to expand its operations, capab
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec India Technology & Engineering Center Recognized as a Great Place to Work®Wabtec Corporation (NYSE: WAB), a leading technology supplier for the freight and transit rail industries, announ
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec to Supply Passenger Information Systems for Munich S-Bahn TrainsWabtec (NYSE: WAB) announced today a letter of intent with Siemens Mobility to supply passenger information systems for Mun
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Spinning Up the Future of Transit Braking TechnologyWabtec is spinning up the future of transit braking technology at the company’s location in Piossasco, Italy. The site features a colossal yel
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Batteries IncludedThere is a new locomotive on New York's Metropolitan Transportation Authority (MTA) rail network, and it’s charged up to support the subway maintenance operations. Wabtec’s new
Teaser
Trains of ThoughtContent Type
BlogsPublish date
11/11/2025
Summary
Dude, Where's My Railcar?Wabtec innovation addresses a decades-long blind spot in freight rail: Visibility into railcar location, status, and condition.A hole in the bucketFreight rail holds a n
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
New Wabtec Collision Avoidance System Sets High Bar for Safety and Efficiency in the Mining IndustryGen-3 CAS Features Predictive Curved-Beam Breakthrough and Contextual Alert InnovationPlaying
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Innovating with a PurposeWabtec’s products and services have delivered value throughout our over 150-year history, and we continue to identify new opportunities for improvement. The mix of Wabte
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Partnering to Support the Next Generation of Innovators in IndiaWabtec has long worked to meaningfully impact the communities in which it works and operates through its “Caring for Our Communiti
Jobs you have shown an interest in