TSA SD 1580/82

Also known as: SD 1580/82-2022-01, Rail Cybersecurity Mitigation Actions and Testing, TSA rail cybersecurity directive, SD 1580-21-01, SD 1582-21-01

TSA Security Directive 1580/82-2022-01 (Rail Cybersecurity Mitigation Actions and Testing) — Transportation Security Administration (US Department of Homeland Security)

The performance-based cybersecurity duty TSA placed on freight railroads and passenger rail after Colonial Pipeline: a network segmentation plan that keeps operational technology running if information technology is compromised, access control, continuous monitoring and detection, timely patching, plus an annual cybersecurity assessment plan filed with TSA and a tested incident response plan. It is reissued roughly yearly, each revision replacing the last.

Subscribe to TSA SD 1580/82 (RSS)

Timeline

No changes recorded yet — we are watching, and nothing has been published.

Monitoring

Watched by 1 official source. Watching since 20 September 2026.