Skip to main content

European data security agency focuses on public transportation cyber security

In the light of the trend towards smart cities, the European Union Agency for Network and Information Security (ENISA) has released a report on smart cities and their intelligent public transportation (IPT) systems. The report, Cyber Security and Resilience of Intelligent Public Transport, focuses on the protection of the assets critical to IPT in the context of smart cities. These assets are considered critical as they contribute to the normal operation of local public transport networks, including metr
February 15, 2016 Read time: 2 mins
In the light of the trend towards smart cities, the European Union Agency for Network and Information Security (ENISA) has released a report on smart cities and their intelligent public transportation (IPT) systems.

The report, Cyber Security and Resilience of Intelligent Public Transport, focuses on the protection of the assets critical to IPT in the context of smart cities. These assets are considered critical as they contribute to the normal operation of local public transport networks, including metro, buses, light rail and other modes of mass public transport found in smart cities.

It also gives an overview of the existing security measures, or good practice, that could be deployed to protect critical assets and ensure security of the IPT system, based on a survey and interviews of experts from the sector, municipalities, operators, manufacturers and policy makers.

The report makes recommendations for the European Commission (EU) and its member states, IPT operators and manufacturers of IPT systems, including:

The EU and its member states should promote an EU-wide public/private collaboration on IPT cyber security and facilitate the development of a common EU approach to IPT security, including the development of harmonised standards.

IPT operators should integrate cyber security, its strategy and risk management into their corporate governance and routinely re-evaluate their cyber security processes.

Manufacturers of IPT systems should develop products/solutions that match the cyber security requirements of IPT end-users, collaborate in the development of IPT-specific standards and apply them to IPT solutions and develop a trusted information sharing platform.

Related Content

  • Asecap Days delves beneath the surface of tolling
    August 8, 2017
    Colin Sowman picks his highlights from Asecap’s 45th annual Study and Information Days in Paris. European tolling association Asecap holds annual Study & Information Days, provides delegates with updates on the latest moves and thinking in the tolling sector and is a key meeting place for concessionaires from 22 countries. The importance of road transport to the French economy was highlighted by the country’s director general of transport infrastructures, François Poupard, in the opening session. He told th
  • ITS needs continuity at the policy-making level
    February 1, 2012
    ITS needs to be sold to politicians in plainer terms and we need to be encouraging greater continuity at the policy-making level says Josef Czako, chairman of the IRF's Policy Committee on ITS. At the ITS World Congress in New York in 2008, the International Road Federation (IRF) held the inaugural meeting of its Policy Committee on ITS. The Policy Committee's formation, says its chairman, Kapsch's Josef Czako, reflects an ongoing concern over the lack of deployment of ITS technology on roads in anything li
  • IBTTA: industry must commit to trust and accountability
    August 23, 2018
    Without a commitment to trust and accountability, the modern road tolling industry would not have the bedrock which it requires – and which customers demand, says IBTTA’s Bill Cramer When Tim Stewart, executive director of Colorado’s E-470 Public Highway Authority, settled on ‘trust and accountability’ as the themes for his year as IBTTA president, it was a very deliberate choice. Stewart was looking for language that would help deliver the global tolling industry’s message of service excellence to cust
  • Real time active traffic management improves travel times
    July 17, 2012
    Traffic management centres (TMC) have traditionally served to provide surveillance and responses to traffic incidents and recurring and non-recurring changes in road networks. Typically, a TMC collected field data from the roadway and transit infrastructure and provided the integration necessary for operators to see what was happening and then coordinate a response. Standard operating procedures (SOPs) guided operators on how to respond to a given situation. It eventually became impractical for TMC operat