Rail Cybersecurity is a Journey, Not a Product
Rail Cybersecurity is a Journey, Not a Product
Introduction: More than cybersecurity mandates
Long before the TSA issued Security Directive 1580/82-2022-01 to help reduce risks posed by cybersecurity threats on critical rail operations, rail operators proactively banded together to form the Rail Information Security Committee (RISC) and tackle cybersecurity concerns as an industry.
Yet even with this laudable head start, rail cybersecurity remains a work in progress as operators and their ecosystem partners grapple with the complexities of making a vast, mainly legacy infrastructure more resilient and secure.
A big part of the challenge, one rail shares with industrial players at large, is that implementing cybersecurity measures at scale isn’t simply an information technology (IT) problem – it’s also an operational technology (OT) one. There is no single security software vendor with a plan, patch, or solution for the extensive mix of physical and digital assets that comprise today’s rail fleets.
There is no silver bullet.
Developing and evolving the right set of cybersecurity solutions for the rail industry is going to take time and collaboration among carriers and vendors who know the industry best – and an approach rooted not simply in software acumen, but in a deep understanding of operational technology, some of which predates the Internet.
Getting started
A big part of accomplishing this task will be understanding that big fixes take time – and need to be implemented with great care. While tempting to think that bolt-on security solutions can make rail operations more ‘compliant,’ short-term fixes for challenges with long-term safety and security implications won’t cut it.
One major implication of bolt-on solutions is that they are difficult to manage and maintain, making them more costly to operate over time. The most efficient way forward is to think through the problem thoroughly up front and design solutions that will stand the cybersecurity test of time.
“Railroads have a lot on their plates when it comes to cybersecurity,” says Susan Peterson Sturm, Senior Director, Cyber Product and Strategic Partnerships at Wabtec. “The TSA is mandating security capabilities that aren’t organic to the original physical and digital assets in their networks, and the security stack that is emerging now for the enterprise isn’t suited to the realities and rigors of rail operations. That said, the rail industry is experienced at rolling up its sleeves and working with its partners to meet big challenges. Just look at what we accomplished together in developing Positive Train Control (PTC).”
Receive articles like this
Roles you might be interested in
Salary
Location
Erie, PA, United States
Location
Erie
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
It’s not just about your career or job title… It’s about who you are and the impact you will make on the world. Because whether it’s for each other or our customers, we put People First. When our peop
Reference
c05f682e-ea57-48f5-8f57-89db5cd14f6e
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Amiens, HF, France
Location
Amiens
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Dans le cadre du développement de nos activités Supply Chain et douanes, nous recherchons un(e) stagiaire en Commerce International pour contribuer à la mise à jour et à la fiabilisation de notre bas
Reference
f34b4ae3-e193-4c39-bb93-14868a0d790a
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Contagem, MG, Brazil
Location
Contagem
Time Type
Full-Time
Remote Type
On site
Job Family
Human Resources
Description
This position is for work in an on-site format, in Contagem - MG. Who will you be working with?We are team of curious, passionate, process efficient, customer centric HR professionals! We are driving
Reference
c27bbe8a-6b72-4f3c-8240-e36b5d3ef04d
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Brasilia, Brazil
Location
Brasilia
Time Type
Full-Time
Remote Type
On site
Job Family
Services
Description
Atuação presencial em São Luis, MA. Com quem você trabalhará? No time MSA (Maintenance Service Agreement) em São Luis - Maranhão (Equipe que suportará nossas operações no cliente). Como você irá fa
Reference
1dbf71c5-890f-4624-8bd9-d82a37ec00b2
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Duncan, SC, United States
Location
Duncan
Time Type
Full-Time
Remote Type
On site
Job Family
Sales
Description
Who will you be working with?Our Transit Services Commercial Operations team in North America is focused to deliver unparalleled added value to our customers through a comprehensive understanding of t
Reference
3b1ceca6-d81e-4c65-8bc2-006f56454cfc
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Webster, TX, United States
Location
Webster
Time Type
Full-Time
Remote Type
On site
Job Family
Administration
Description
The Repair Calibration Technician II is responsible for the in-house testing, troubleshooting, repair and calibration of Evident Instrumentation used in laboratory, manufacturing and other environment
Reference
ce0574c0-2914-4a55-86e6-4ad711ea36fc
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Torreon, CO, Mexico
Location
Torreon
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Proposito de puesto : Realizar, reparación de componentes eléctricos, cumpliendo con los requerimientos de calidad establecidos por la empresa, manteniendo la cultura de seguridad, calidad y responsab
Reference
0a1e61ad-b62b-4c80-8467-4f49e656d638
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Torreon, CO, Mexico
Location
Torreon
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Proposito de puesto : Realizar, reparación de componentes eléctricos, cumpliendo con los requerimientos de calidad establecidos por la empresa, manteniendo la cultura de seguridad, calidad y responsab
Reference
157e0ad8-fb1f-47f2-9d01-9663b1b7d159
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Torreon, CO, Mexico
Location
Torreon
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Proposito de puesto : Realizar, reparación de componentes eléctricos, cumpliendo con los requerimientos de calidad establecidos por la empresa, manteniendo la cultura de seguridad, calidad y responsab
Reference
ab16801d-fb0b-4c63-8289-eaa2b988257e
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Duncan, SC, United States
Location
Duncan
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Wabtec Corporation is a leading global provider of equipment, systems, digital solutions and value-added services for freight and transit rail. Drawing on nearly four centuries of collective experienc
Reference
7f176e36-d9ec-4c04-a7d7-6b11616ef61f
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorArticles you might like
Teaser
Wabtec NewsContent Type
NewsPublish date
03/05/2026
Summary
Wabtec Expands Locomotive Services Capabilities in India SILIGURI, West Bengal, January 15, 2026 — Wabtec Corporation (NYSE: WAB) and Indian Railways celebrated the start of locomotive service opera
Teaser
Wabtec NewsContent Type
ArticlesPublish date
11/11/2025
Summary
Wabtec to Expand Operations and Workforce in Brazil with R$20 Million InvestmentCONTAGEM, MG (11/05/25) – Wabtec Corporation (NYSE: WAB) is investing R$20 million to expand its operations, capab
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec India Technology & Engineering Center Recognized as a Great Place to Work®Wabtec Corporation (NYSE: WAB), a leading technology supplier for the freight and transit rail industries, announ
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec to Supply Passenger Information Systems for Munich S-Bahn TrainsWabtec (NYSE: WAB) announced today a letter of intent with Siemens Mobility to supply passenger information systems for Mun
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Spinning Up the Future of Transit Braking TechnologyWabtec is spinning up the future of transit braking technology at the company’s location in Piossasco, Italy. The site features a colossal yel
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Batteries IncludedThere is a new locomotive on New York's Metropolitan Transportation Authority (MTA) rail network, and it’s charged up to support the subway maintenance operations. Wabtec’s new
Teaser
Trains of ThoughtContent Type
BlogsPublish date
11/11/2025
Summary
Dude, Where's My Railcar?Wabtec innovation addresses a decades-long blind spot in freight rail: Visibility into railcar location, status, and condition.A hole in the bucketFreight rail holds a n
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
New Wabtec Collision Avoidance System Sets High Bar for Safety and Efficiency in the Mining IndustryGen-3 CAS Features Predictive Curved-Beam Breakthrough and Contextual Alert InnovationPlaying
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Innovating with a PurposeWabtec’s products and services have delivered value throughout our over 150-year history, and we continue to identify new opportunities for improvement. The mix of Wabte
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Partnering to Support the Next Generation of Innovators in IndiaWabtec has long worked to meaningfully impact the communities in which it works and operates through its “Caring for Our Communiti
Jobs you have shown an interest in