Rail Cybersecurity is a Journey, Not a Product
Rail Cybersecurity is a Journey, Not a Product
Introduction: More than cybersecurity mandates
Long before the TSA issued Security Directive 1580/82-2022-01 to help reduce risks posed by cybersecurity threats on critical rail operations, rail operators proactively banded together to form the Rail Information Security Committee (RISC) and tackle cybersecurity concerns as an industry.
Yet even with this laudable head start, rail cybersecurity remains a work in progress as operators and their ecosystem partners grapple with the complexities of making a vast, mainly legacy infrastructure more resilient and secure.
A big part of the challenge, one rail shares with industrial players at large, is that implementing cybersecurity measures at scale isn’t simply an information technology (IT) problem – it’s also an operational technology (OT) one. There is no single security software vendor with a plan, patch, or solution for the extensive mix of physical and digital assets that comprise today’s rail fleets.
There is no silver bullet.
Developing and evolving the right set of cybersecurity solutions for the rail industry is going to take time and collaboration among carriers and vendors who know the industry best – and an approach rooted not simply in software acumen, but in a deep understanding of operational technology, some of which predates the Internet.
Getting started
A big part of accomplishing this task will be understanding that big fixes take time – and need to be implemented with great care. While tempting to think that bolt-on security solutions can make rail operations more ‘compliant,’ short-term fixes for challenges with long-term safety and security implications won’t cut it.
One major implication of bolt-on solutions is that they are difficult to manage and maintain, making them more costly to operate over time. The most efficient way forward is to think through the problem thoroughly up front and design solutions that will stand the cybersecurity test of time.
“Railroads have a lot on their plates when it comes to cybersecurity,” says Susan Peterson Sturm, Senior Director, Cyber Product and Strategic Partnerships at Wabtec. “The TSA is mandating security capabilities that aren’t organic to the original physical and digital assets in their networks, and the security stack that is emerging now for the enterprise isn’t suited to the realities and rigors of rail operations. That said, the rail industry is experienced at rolling up its sleeves and working with its partners to meet big challenges. Just look at what we accomplished together in developing Positive Train Control (PTC).”
Receive articles like this
Roles you might be interested in
Salary
Location
Hibbing, MN, United States
Location
Hibbing
Time Type
Full-Time
Remote Type
On site
Job Family
Engineering/Technology
Description
How will you make a difference?You will ensure the reliability, quality, and efficiency of our Teamcenter PLM environment. As part of the Freight Components business, you will support our engineering
Reference
13786883-03ea-4642-b518-db669fb0a348
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Jackson, TN, United States
Location
Jackson
Time Type
Full-Time
Remote Type
On site
Job Family
Engineering/Technology
Description
How will you make a difference?You will ensure the reliability, quality, and efficiency of our Teamcenter PLM environment. As part of the Freight Components business, you will support our engineering
Reference
9836135d-ed82-4d33-a1bb-7d3d13892fc4
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Oak Creek, WI, United States
Location
Oak Creek
Time Type
Full-Time
Remote Type
On site
Job Family
Engineering/Technology
Description
Who will you be working with?You will be working as part of the Nordco Engineering Team helping bring new technologies to the Roadway Work Equipment industry.How will you make a difference?You will pl
Reference
b3cf1bbf-a4fb-411c-bd41-fdea3d2162ce
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Houston, TX, United States
Location
Houston
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Who will you be working with?The Materials & Planning Specialist owns and expedites the flow of materials (from suppliers and also within departments) according to production schedules.How will you ma
Reference
ee0b073a-be93-4f2a-8f6c-fe859a3571ed
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Quebec City, QC, Canada
Location
Quebec City
Time Type
Full-Time
Remote Type
On site
Job Family
Administration
Description
L'électromécanicien entretien les machines afin d'éviter les bris et les arrêts de production. Il travaille également sur différents projets reliés à la maintenance, telle la réparation de bris. Il pe
Reference
4ad6063d-4ac3-4e6e-b3d2-29e5867f3dc1
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
West Melbourne, FL, United States
Location
West Melbourne
Time Type
Full-Time
Remote Type
Hybrid
Job Family
Services
Description
Job DescriptionRole Summary: The Staff Customer Support Team Manager oversees front-line support to our customers for various inquiries using a mix of technical troubleshooting and customer service sk
Reference
e53945c9-5901-4f23-9c12-3e8b52b02377
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Urnieta, PV, Spain
Location
Urnieta
Time Type
Full-Time
Remote Type
Hybrid
Job Family
Management
Description
We hire a General Manager Rubber (m./f.)Location : Urnieta (San Sebastian)Who will you be working with?The Friction & Rubber Group is a global leader in friction and elastomer solutions for the rail i
Reference
682be9a9-609b-42af-b344-c3613bb7e11c
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Buffalo Grove, IL, United States
Location
Buffalo Grove
Time Type
Full-Time
Remote Type
On site
Job Family
Engineering/Technology
Description
It’s not just about your career or job title… It’s about who you are and the impact you will make on the world. Because whether it’s for each other or our customers, we put People First. When our peop
Reference
baf9bf4b-9861-48ab-a80f-9451e175e79e
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Contagem, MG, Brazil
Location
Contagem
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Essa posição é para atuar em regime presencial, em Contagem - Minas Gerais. Com quem você trabalhará? Wabtec está com uma excelente oportunidade para Operador I, atuando em processos produtivos e lo
Reference
49bc180e-8faf-42bb-8d41-63b2f9075298
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorSalary
Location
Contagem, MG, Brazil
Location
Contagem
Time Type
Full-Time
Remote Type
On site
Job Family
Operations
Description
Essa posição é para atuar em regime presencial, em Contagem - Minas Gerais. Com quem você trabalhará? Wabtec está com uma excelente oportunidade para Operador I, atuando em processos produtivos e lo
Reference
5e352963-4652-48f7-ab77-921404b8e242
Expiry Date
01/01/0001
Author
Attrax AdministratorAuthor
Attrax AdministratorArticles you might like
Teaser
Wabtec NewsContent Type
NewsPublish date
03/05/2026
Summary
Wabtec Expands Locomotive Services Capabilities in India SILIGURI, West Bengal, January 15, 2026 — Wabtec Corporation (NYSE: WAB) and Indian Railways celebrated the start of locomotive service opera
Teaser
Wabtec NewsContent Type
ArticlesPublish date
11/11/2025
Summary
Wabtec to Expand Operations and Workforce in Brazil with R$20 Million InvestmentCONTAGEM, MG (11/05/25) – Wabtec Corporation (NYSE: WAB) is investing R$20 million to expand its operations, capab
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec India Technology & Engineering Center Recognized as a Great Place to Work®Wabtec Corporation (NYSE: WAB), a leading technology supplier for the freight and transit rail industries, announ
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec to Supply Passenger Information Systems for Munich S-Bahn TrainsWabtec (NYSE: WAB) announced today a letter of intent with Siemens Mobility to supply passenger information systems for Mun
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Spinning Up the Future of Transit Braking TechnologyWabtec is spinning up the future of transit braking technology at the company’s location in Piossasco, Italy. The site features a colossal yel
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Batteries IncludedThere is a new locomotive on New York's Metropolitan Transportation Authority (MTA) rail network, and it’s charged up to support the subway maintenance operations. Wabtec’s new
Teaser
Trains of ThoughtContent Type
BlogsPublish date
11/11/2025
Summary
Dude, Where's My Railcar?Wabtec innovation addresses a decades-long blind spot in freight rail: Visibility into railcar location, status, and condition.A hole in the bucketFreight rail holds a n
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
New Wabtec Collision Avoidance System Sets High Bar for Safety and Efficiency in the Mining IndustryGen-3 CAS Features Predictive Curved-Beam Breakthrough and Contextual Alert InnovationPlaying
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Innovating with a PurposeWabtec’s products and services have delivered value throughout our over 150-year history, and we continue to identify new opportunities for improvement. The mix of Wabte
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Partnering to Support the Next Generation of Innovators in IndiaWabtec has long worked to meaningfully impact the communities in which it works and operates through its “Caring for Our Communiti
Jobs you have shown an interest in