Panel Discussion: Securing the Tracks—Navigating the NIS 2 and CRA in the Railway Industry (R22b)
The railway industry is facing unprecedented challenges in the cybersecurity space, driven by evolving regulations such as the Cyber Resilience Act (CRA) and the NIS2 Directive. This moderated panel discussion, will be led by a lawyer with expertise in CRA and NIS2 compliance within the railway sector and seeks to provide actionable insights for industry stakeholders on how to navigate these complex legal and regulatory frameworks. The conversation will highlight the importance of interdisciplinary collaboration—bringing together suppliers, integrators, operators and one European Organization (potentially ERA or ENISA representative), all of whom are grappling with the real-world implications of these new regulations. Key topics to be explored include: Translating legal requirements of CRA and NIS2 into practical compliance strategies. How suppliers can ensure the security of their products in line with regulatory demands. The role of operators in defending critical rail networks against cyber threats. The diversity of perspectives, including sectors and expertises, necessary for building a resilient cybersecurity framework for the railway sector. By fostering cross-disciplinary collaboration, this panel aims to equip participants with a comprehensive understanding of how the CRA and NIS2 are transforming the rail industry’s approach to cybersecurity. Panelists will discuss how the industry can work together to build a resilient, compliant, and secure infrastructure (of course, by making an emphasis on the use of standards).




