Reference library
The official sources, plus a plain-language explainer.
Curated links to the regulations, Irish guidance, and standards that matter for rail cyber resilience, with a scoped assistant for the parts people get stuck on.
Library
Curated references
EU directives and regulation
Primary EU cybersecurity directive for essential and important entities.
Operational resilience companion to cyber-focused obligations.
Sector guidance relevant to transport and rail operators.
Useful practical summary of scope, timelines, and reporting expectations.
Irish guidance and law
National cyber guidance, alerts, and supporting resources.
Irish legal implementation detail around GDPR obligations.
Practical compliance guidance for organisations operating in Ireland.
Plain-language guidance on when to notify the DPC and affected individuals.
Standards and practice
Information security management system baseline.
OT and industrial control system security standard series.
Widely adopted structure for identifying, protecting, detecting, responding, and recovering.
Rail-specific good practices for railway undertakings and infrastructure managers.
Scoped assistant
Ask the reference assistant
Ask how NIS2, GDPR, ISO 27001, IEC 62443, and sector guidance apply to rail operations in practice.