Skip to main content

European data security agency focuses on public transportation cyber security

In the light of the trend towards smart cities, the European Union Agency for Network and Information Security (ENISA) has released a report on smart cities and their intelligent public transportation (IPT) systems. The report, Cyber Security and Resilience of Intelligent Public Transport, focuses on the protection of the assets critical to IPT in the context of smart cities. These assets are considered critical as they contribute to the normal operation of local public transport networks, including metr
February 15, 2016 Read time: 2 mins
In the light of the trend towards smart cities, the European Union Agency for Network and Information Security (ENISA) has released a report on smart cities and their intelligent public transportation (IPT) systems.

The report, Cyber Security and Resilience of Intelligent Public Transport, focuses on the protection of the assets critical to IPT in the context of smart cities. These assets are considered critical as they contribute to the normal operation of local public transport networks, including metro, buses, light rail and other modes of mass public transport found in smart cities.

It also gives an overview of the existing security measures, or good practice, that could be deployed to protect critical assets and ensure security of the IPT system, based on a survey and interviews of experts from the sector, municipalities, operators, manufacturers and policy makers.

The report makes recommendations for the European Commission (EU) and its member states, IPT operators and manufacturers of IPT systems, including:

The EU and its member states should promote an EU-wide public/private collaboration on IPT cyber security and facilitate the development of a common EU approach to IPT security, including the development of harmonised standards.

IPT operators should integrate cyber security, its strategy and risk management into their corporate governance and routinely re-evaluate their cyber security processes.

Manufacturers of IPT systems should develop products/solutions that match the cyber security requirements of IPT end-users, collaborate in the development of IPT-specific standards and apply them to IPT solutions and develop a trusted information sharing platform.

Related Content

  • Adopting universal technology platforms for tolling
    July 16, 2012
    Dave Marples of Technolution argues that the continuing development of tolling-specific onboard equipment is leading us up a blind alley. We should, he says, be looking to realise universal platforms with universal application. The near-future automobile contains information systems of a sophistication to rival a jet airliner of only a few years ago, yet is 'piloted' by a considerably less well-trained individual of highly variable mental and physical capacity, and operated in a hostile, unpredictable and p
  • Meeting the challenges of smartcard fare payment
    July 4, 2012
    David Crawford monitors a growing trend in contactless smartcard ticketing The north east United States has become a hive of activity in the smart fare payment arena. In October 2011, the New York Metropolitan Transportation Authority (MTA) published, as a preliminary to an imminent procurement process, the detailed concept of its New Fare Payment System (NFPS). Based on open payment industry standards, this is designed to be implemented on all MTA bus and subway services operated by New York City Transit (
  • The Middle East takes lead in urban mobility
    November 24, 2017
    Ralf Baron, Thomas Kuruvilla, Morsi Berguiga, Michael Zintel, Joseph Salem and Mario Kerbage from Arthur D. Little explain why there is much to be learned from the Middle East about the rapid evolution of transport systems. The rapid urbanisation across the globe is leading to mobility challenges as cities struggle to ensure their populations can move around freely using both public and private transport. Solving these issues is critical to ensuring that cities thrive and attract the investment and
  • POSSE - delivering improved interoperability of urban ITS
    January 14, 2015
    The main findings and recommendations of the INTERREG IVC co-funded POSSE project are summarised in several reports, the POSSE Good Practice Guide to developing and implementing OSS and the POSSE Exploitation Plan, both of which were published towards the end of 2014. The three years of discussion and knowledge-sharing on Open Specifications and Standards (OSS) for urban ITS in Europe have been very beneficial to all partners; a key finding of the project is that the diversity of Europe, notably its in