Cyber Security in
Railway Technology

Cyber security in railway technology
think holistically

Our services

Cyber security is not an optional addition, but the key to successful and sustainable digitalization. As IT security architects (IT-SA), we support you holistically in the conception in order to establish IT security (security by design) early on in your project, to meet the current requirements and the KRITIS regulation for critical infrastructures and to prevent a successful attack on critical infrastructures.

Security Management
Support and advice in the design of the IT security architecture according to IEC 62443
Requirements analysis
specification of IT security requirements
Threat Modeling
Identification of potential IT risks according to NIST SP 800-30
Secure by Design
Implementation of the Secure-by-Design principle to implement defense-in-depth measures
Secure Software Development
Support in the implementation of the Security Development Lifecycle (SDLC)

Your expectations

When designing, we are guided by the current industry standards IEC 62443 and TS 50701 (Railway applications – CyberSecurity) in order to solve IT security problems specific to rail vehicles and railway infrastructure. These include the challenges of simple physical access by an attacker or the safety-critical systems in the system environment.

In addition, we are available for long-term security verification and validation testing (including SL-2) by supporting the initial specification of system requirements during the integration phase through penetration tests and vulnerability scans (according to ATT&CK for ICS).

This relieves you of the burden in the key phases of the V-model in terms of IT security: