Rail Cybersecurity is a Journey, Not a Product
Rail Cybersecurity is a Journey, Not a Product
Introduction: More than cybersecurity mandates
Long before the TSA issued Security Directive 1580/82-2022-01 to help reduce risks posed by cybersecurity threats on critical rail operations, rail operators proactively banded together to form the Rail Information Security Committee (RISC) and tackle cybersecurity concerns as an industry.
Yet even with this laudable head start, rail cybersecurity remains a work in progress as operators and their ecosystem partners grapple with the complexities of making a vast, mainly legacy infrastructure more resilient and secure.
A big part of the challenge, one rail shares with industrial players at large, is that implementing cybersecurity measures at scale isn’t simply an information technology (IT) problem – it’s also an operational technology (OT) one. There is no single security software vendor with a plan, patch, or solution for the extensive mix of physical and digital assets that comprise today’s rail fleets.
There is no silver bullet.
Developing and evolving the right set of cybersecurity solutions for the rail industry is going to take time and collaboration among carriers and vendors who know the industry best – and an approach rooted not simply in software acumen, but in a deep understanding of operational technology, some of which predates the Internet.
Getting started
A big part of accomplishing this task will be understanding that big fixes take time – and need to be implemented with great care. While tempting to think that bolt-on security solutions can make rail operations more ‘compliant,’ short-term fixes for challenges with long-term safety and security implications won’t cut it.
One major implication of bolt-on solutions is that they are difficult to manage and maintain, making them more costly to operate over time. The most efficient way forward is to think through the problem thoroughly up front and design solutions that will stand the cybersecurity test of time.
“Railroads have a lot on their plates when it comes to cybersecurity,” says Susan Peterson Sturm, Senior Director, Cyber Product and Strategic Partnerships at Wabtec. “The TSA is mandating security capabilities that aren’t organic to the original physical and digital assets in their networks, and the security stack that is emerging now for the enterprise isn’t suited to the realities and rigors of rail operations. That said, the rail industry is experienced at rolling up its sleeves and working with its partners to meet big challenges. Just look at what we accomplished together in developing Positive Train Control (PTC).”
Receive articles like this
Roles you might be interested in
Salary
Location
Warren, OH, United States
Location
Warren
Time Type
Full - Time
Remote Type
Remote
Job Family
Operations
Description
Who will you be working with?At Schaefer Equipment, you will work independently or as part of a team to produce high‑quality workpieces. This role involves operating a variety of industrial machines—i
Reference
1293ca4a-1c7b-4454-83cf-9eb218e7b44d
Expiry Date
01/01/0001
Salary
Location
Contagem, MG, Brazil
Location
Contagem
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
Essa posição é para atuar em regime presencial, em Contagem, MG.Com quem você vai trabalhar?Você fará parte da área de Sinalização & Sistemas – Digital Intelligence, atuando diretamente em campo em pr
Reference
45086d1c-311d-41f5-8805-470805ec76f0
Expiry Date
01/01/0001
Salary
Location
Erie, PA, United States
Location
Erie
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
Who will you be working with?The Engineering Operations & Governance organization is responsible for driving operational excellence in engineering to deliver world class products with cost efficiency
Reference
875b354b-60e7-4f85-9bc3-62983096286b
Expiry Date
01/01/0001
Salary
Location
Bengaluru, KA, India
Location
Bengaluru
Time Type
Full - Time
Remote Type
Hybrid
Job Family
Engineering/Technology
Description
It’s not just about your career or job title… It’s about who you are and the impact you will make on the world. Because whether it’s for each other or our customers, we put People First. When our peop
Reference
ceacd2e4-8af6-4f03-895b-77652e1b4952
Expiry Date
01/01/0001
Salary
Location
Quebec City, QC, Canada
Location
Qu�bec City
Time Type
Full - Time
Remote Type
Hybrid
Job Family
Engineering/Technology
Description
Vous êtes passionné par la technologie, l’innovation et les défis techniques stimulants? Rejoignez une équipe R&D agile, multidisciplinaire et à structure aplanie, où chaque idée compte et où l’excel
Reference
fc4f5d31-1f59-4d8e-9a83-977726a11c44
Expiry Date
01/01/0001
Salary
Location
Schüttorf, LS, Germany
Location
Schüttorf
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
STEMMANN-TECHNIK ist zertifizierter Partner verschiedener Marktführer in der Industrie- und Bahntechnik. Am Standort in Deutschland fertigen wir weltweit gefragte Qualitätsprodukte und konstruieren in
Reference
2ccc87d4-cb2f-4244-a690-4e7845ed4eed
Expiry Date
01/01/0001
Salary
Location
Plzen, PL, Czechia
Location
Plzen
Time Type
Full - Time
Remote Type
Hybrid
Job Family
Engineering/Technology
Description
As a Test Engineer, you will play a key role in ensuring the validation and safety of railway technology.🚀 How will you make a difference?Carry out onboard measurement runs (‘line tests‘‘) in complia
Reference
2f84d8db-e223-4fbc-9102-3ebd353624e6
Expiry Date
01/01/0001
Salary
Location
Amiens, HF, France
Location
Amiens
Time Type
Full - Time
Remote Type
On site
Job Family
Engineering/Technology
Description
stagiaire innovation
Reference
5eb37cbb-e786-4345-adaa-a02c4147b466
Expiry Date
01/01/0001
Salary
Location
Astana, AK, Kazakhstan
Location
Astana
Time Type
Full - Time
Remote Type
On site
Job Family
Human Resources
Description
Who will you be working with?You will be working with CIS HR Operations team to ensure strong customer service to the business and to drive efficiency by improving operational processes and procedures
Reference
8aca2848-fe13-458c-abd5-e39e2073b6be
Expiry Date
01/01/0001
Salary
Location
Astana, AK, Kazakhstan
Location
Astana
Time Type
Full - Time
Remote Type
On site
Job Family
Operations
Description
Who will you be working with?You will be part of the Plant Quality team, working closely with manufacturing, engineering, supply chain, and leadership teams. The role partners with regional quality fu
Reference
759b51d8-b075-4b85-8014-b376ba4a8823
Expiry Date
01/01/0001
Articles you might like
Teaser
Wabtec NewsContent Type
NewsPublish date
03/05/2026
Summary
Wabtec Expands Locomotive Services Capabilities in India SILIGURI, West Bengal, January 15, 2026 — Wabtec Corporation (NYSE: WAB) and Indian Railways celebrated the start of locomotive service opera
Teaser
Wabtec NewsContent Type
ArticlesPublish date
11/11/2025
Summary
Wabtec to Expand Operations and Workforce in Brazil with R$20 Million InvestmentCONTAGEM, MG (11/05/25) – Wabtec Corporation (NYSE: WAB) is investing R$20 million to expand its operations, capab
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec India Technology & Engineering Center Recognized as a Great Place to Work®Wabtec Corporation (NYSE: WAB), a leading technology supplier for the freight and transit rail industries, announ
Teaser
Wabtec NewsContent Type
BlogsPublish date
11/11/2025
Summary
Wabtec to Supply Passenger Information Systems for Munich S-Bahn TrainsWabtec (NYSE: WAB) announced today a letter of intent with Siemens Mobility to supply passenger information systems for Mun
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Spinning Up the Future of Transit Braking TechnologyWabtec is spinning up the future of transit braking technology at the company’s location in Piossasco, Italy. The site features a colossal yel
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Batteries IncludedThere is a new locomotive on New York's Metropolitan Transportation Authority (MTA) rail network, and it’s charged up to support the subway maintenance operations. Wabtec’s new
Teaser
Trains of ThoughtContent Type
BlogsPublish date
11/11/2025
Summary
Dude, Where's My Railcar?Wabtec innovation addresses a decades-long blind spot in freight rail: Visibility into railcar location, status, and condition.A hole in the bucketFreight rail holds a n
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
New Wabtec Collision Avoidance System Sets High Bar for Safety and Efficiency in the Mining IndustryGen-3 CAS Features Predictive Curved-Beam Breakthrough and Contextual Alert InnovationPlaying
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Innovating with a PurposeWabtec’s products and services have delivered value throughout our over 150-year history, and we continue to identify new opportunities for improvement. The mix of Wabte
Teaser
Trains of ThoughtContent Type
ArticlesPublish date
11/11/2025
Summary
Partnering to Support the Next Generation of Innovators in IndiaWabtec has long worked to meaningfully impact the communities in which it works and operates through its “Caring for Our Communiti
Jobs you have shown an interest in