Inside Cybersecurity

April 20, 2024

Daily News

TSA official: New security directive for rail operators reflects extensive industry input

By Charlie Mitchell / October 18, 2022

A new cybersecurity directive for major rail operators embraces an “outcome-based” approach that will be reflected in a broader cyber regulatory proposal coming later this year, according to Transportation Security Administration policy leader Scott Gorton.

The new directive setting updated cyber requirements for rail will be issued as soon as today, Gorton said, and will include language requiring implementation of policies on network segmentation, access control, continuous detection and monitoring, and patch management.

But Gorton stressed that TSA has “listened...


Log in to access this content.


Not a subscriber? Sign up for 30 days free access to exclusive news and analysis on cybersecurity regulations and more.