Skip to content
Crest Technologies
Industry · TS 50701 / EN 50155

Rail

Engineering and cybersecurity for rolling stock and rail infrastructure — where TS 50701 is now a procurement requirement, not a discussion.

  • TS 50701
  • EN 50155
  • IEC 62443
  • EN 50126/8/9 (context)

Rail is Crest's home ground: on-board train IT systems, safety-adjacent electronics and the cybersecurity case that now accompanies them. Operators and suppliers face TS 50701 in tenders, 30-year asset lives, and a growing gap between IT security practice and what a train actually needs.

Sector pressures

What this sector is actually up against

TS 50701 in procurement

Cybersecurity requirements derived from IEC 62443 now appear directly in rolling-stock and signalling tenders. Suppliers must present a cybersecurity case alongside the safety case — and evidence of a secure development lifecycle behind it.

Safety-critical train IT with long lives

On-board systems are procured for 30–40 year vehicle lives but built from components with 5-year availability. Obsolescence, patchability and configuration control have to be engineered in at design time.

Legacy fleets meeting modern threats

Fleets designed before connectivity are being retrofitted with passenger Wi-Fi, condition monitoring and remote diagnostics — each retrofit changes the security context of systems that were never threat-modelled.

Fragmented supplier evidence

Operators inherit a patchwork of supplier security claims with no common baseline. Consolidating this into a coherent zone-and-conduit model and a maintainable CMP is a discipline problem before it is a technology problem.

How Crest applies

Services mapped to the pressure

Next step

Discuss a rail engagement

Bring us the tender clause, the audit finding or the architecture question — we'll respond with a specific, costed view.