Back

CLC/TS 50701:2021

Railway applications - Cybersecurity

General information
Withdrawn from 01.09.2023
Base Documents
CLC/TS 50701:2021
Directives or regulations
None

Standard history

Status
Date
Type
Name
01.09.2023
Main
20.07.2021
Main
This document provides to the railway operators, system integrators and product suppliers, with guidance and specifications  on how cybersecurity will be managed in the context of the EN 50126-1 RAMS lifecycle process. This document aims at the implementation of a consistent approach to the management of the security of the railway systems. This document can also be applied to the security assurance of systems and components/equipment developed independently of EN 50126.

This document applies to Communications, Signalling and Processing domain, to Rolling Stock and to Fixed Installations domains. It provides references to models and concepts from which requirements and recommendations can be derived and that are suitable to ensure that the residual risk from security threats is identified, supervised and managed to an acceptable level by the railway system duty holder. It presents the underlying security assumptions in a structured manner.

This document does not address functional safety requirements for railway systems but rather additional requirements arising from threats and related security vulnerabilities and for which specific measures and activities need to be taken and managed throughout the lifecycle. The aim of this technical specification is to ensure that the RAMS characteristics of railway systems / subsystems / equipment cannot be reduced, lost or compromised in the case of intentional attacks.

The security models, the concepts and the risk assessment process described in this document are based on or derived from IEC 62443 series standards. In particular, this document is consistent with the application of security management requirements contained within the IEC 62443-2-1 and which are based on EN ISO 27001 and EN ISO 27002
*
*
*
PDF
46.36 € incl tax
Browse standard from 2.44 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

EVS-ISO/IEC 27005:2019

Information technology - Security techniques - Information security risk management (ISO/IEC 27005:2018, identical)
Withdrawn from 17.01.2024
Main

EVS-EN ISO/IEC 19790:2020

Information technology - Security techniques - Security requirements for cryptographic modules (ISO/IEC 19790:2012, including corrected version 2015-12)
Newest version Valid from 02.04.2020
Main

EVS-EN ISO/IEC 27019:2020

Information technology - Security techniques - Information security controls for the energy utility industry (ISO/IEC 27019:2017, Corrected version 2019-08)
Newest version Valid from 02.04.2020
Main

EVS-ISO/IEC 27003:2021

Information technology - Security techniques -- Information security management systems -- Guidance (ISO/IEC 27003:2017, identical)
Newest version Valid from 03.05.2021