Prof. Mohan Ram
Academic Lead
Prof. Mohan Ram
Academic Lead
Programme academic leadership and cyber-physical systems context.
110+ Hours | Online & Live | Weekend Programme
Build rail cybersecurity expertise with this Executive Certificate Programme from IITM Pravartak (a Technology Innovation Hub of IIT Madras), delivered with Railway Academy. You'll cover IT/OT convergence, signalling and control systems, incident response, digital forensics and risk governance for railways and smart transportation systems.
Offered by IITM Pravartak Technologies Foundation in collaboration with Zenith Railway Academy and cybersecurity specialists

About the innovation hub
IITM Pravartak Technologies Foundation is a Technology Innovation Hub hosted by IIT Madras, funded by India's Department of Science and Technology under the National Mission on Interdisciplinary Cyber-Physical Systems (NM-ICPS). Its faculty bring a blend of academic and industry expertise. Its location in a major industrial hub — with 180+ nearby industries — gives learners hands-on exposure through real industry projects.
This programme is delivered within IITM Pravartak's technology and skilling ecosystem — an independent, verifiable reference point.
Why rail cyber is different
Rail cybersecurity spans enterprise IT, operational technology, signalling and train control, SCADA and power, passenger information and ticketing, wireless and communication networks, rolling-stock systems, cloud and remote access, and the suppliers who maintain them.
The key distinction: in rail, cybersecurity cannot be addressed independently of system safety, operational continuity, asset lifecycle and regulatory obligation.
Two worlds, one attack surface — with very different priorities.
Safety-critical systems where availability and integrity are paramount.
Industrial control environments underpinning traction and operations.
GSM-R, LTE-R and remote maintenance expand the perimeter.
Third-party and supply-chain risk across the asset lifecycle.
Capabilities you will build
Defensible, role-relevant capability across IT, OT and governance.
Map the rail-specific IT/OT threat landscape and cyber-physical vulnerabilities.
Apply network security fundamentals — TCP/IP, VLANs, firewalls and traffic analysis (Wireshark).
Apply cryptographic controls to secure railway communications.
Align cybersecurity practice with regulatory mandates (IT Act, GDPR, NIS2).
Design physical security measures for rail facilities and control centres.
Evaluate security in rail-specific protocols — GSM-R, LTE-R, CBTC, ETCS.
Conduct structured cybersecurity risk assessments for rail systems.
Secure cloud, IoT and mobile components of distributed rail environments.
Assess threats to signalling, interlocking and train-control infrastructure.
Identify and mitigate vulnerabilities in passenger, ticketing and freight systems.
Build rail-specific incident-response plans and escalation protocols.
Conduct vulnerability assessment, penetration testing and application-security review.
Prepare regulatory compliance maps against IEC 62443, EN 50701 and TSA directives.
Design third-party and supply-chain cybersecurity evaluation criteria.
Who should attend
It is not positioned as
A readiness assessment and a foundational preparatory module support participants without prior IT or networking exposure.
Is this programme for you
Select the statements that describe you. This is a self-assessment guide — not a formal eligibility decision.
Tick the statements that apply to you to see how well this programme fits your goals.
Who you will learn with
The peer-learning value lies in bringing rail engineers and cybersecurity professionals into the same room to secure digital rail.
Professional background
Experience distribution
Application interests
The learning journey
Networks, protocols, architecture, cryptography, identity and infrastructure.
Signalling, control, passenger systems, freight, communications and remote access.
Standards, risk assessment, policy, audit, supply chain and compliance.
SOC processes, incident response, digital forensics and log analysis.
Segmentation, vulnerability assessment, protocol analysis and cyber-range exercises.
Respond to a simulated rail cyber incident and produce a defensible mitigation plan.
Curriculum architecture
34 sessions across four modules — grounded in the programme's published session-by-session outline.
Standards & frameworks in context
Only standards actually taught are listed. Coverage depth is stated for each and reviewed before every cohort.
The reference for industrial/OT security in rail environments.
Information security management foundations.
Structuring identify–protect–detect–respond–recover.
Guidance for controls, assessment and response.
Railway cybersecurity engineering — covered in the regulatory-standards session (EN 50701 compliance framework).
Regulatory obligations for essential entities.
Mapping adversary behaviour to detection & response.
Data-privacy and cyber-law compliance covered in the governance module.
Referenced alongside IEC 62443 and EN 50701 in the regulatory-standards session.
Labs & cyber-range
All exercises take place within controlled, authorised lab environments. Access details, prerequisites and acceptable-use rules are confirmed in the brochure.
For every case learners receive
ZRA Labs · Hands-on practice
ZRA Labs is the hands-on practice app included with every Railway Academy executive courses — run guided exercises and live simulations across all eight domains in your browser, and build skills you can use on the job.
Programme faculty & cybersecurity experts
Precise role labels are used throughout — IITM Pravartak faculty, IIT Madras faculty, industry expert, guest faculty or cyber-range mentor. Featured experts subject to confirmation and permission.
Prof. Mohan Ram
Academic Lead
Prof. Mohan Ram
Academic Lead
Programme academic leadership and cyber-physical systems context.
Dr. L. Subramanian
Cyber-Physical Systems
Dr. L. Subramanian
Cyber-Physical Systems
Foundations of secure cyber-physical infrastructure.
Israel Baron
Former CISO, Israel Railways
Israel Baron
Former CISO, Israel Railways
Rail IT/OT threat landscape and defence strategy.
M. Fernandes
SCADA & Signalling
M. Fernandes
SCADA & Signalling
Attack surfaces across control and power systems.
Aniket Amdekar
Cyber-Range Mentor
Aniket Amdekar
Cyber-Range Mentor
Hands-on labs, simulations and capstone response challenge.
T. Balakrishnan
IR & Forensics
T. Balakrishnan
IR & Forensics
Evidence handling, SOC operations and incident response.
Campus immersion
A 30-hour Cyber Range Access and Practice Session featuring state-of-the-art cybersecurity tools inside a dedicated, real-world-style Cyber Range built for learning. Teams practise red-teaming, blue-teaming and white-teaming exercises — planning, executing, protecting, detecting and supporting — using 20+ industry tools.
Inside the cyber-range
IITM Research Park campus
What you will do
Capstone & portfolio
Respond to a simulated railway cyberattack and submit a full incident-response plan (IRP) and risk-mitigation plan.
Anonymised examples from previous cohorts
Contain, triage and coordinate technical + management response to a control-network intrusion.
Assess zones and conduits and recommend architectural hardening.
Map third-party implications and define governance and recovery actions.
Credential
On successful completion, participants receive an Executive Certificate awarded by IITM Pravartak Technologies Foundation, with Zenith Railway Academy named as facilitation partner.

How you are assessed & completion criteria
Career & organisational application
The programme builds specialist capability but does not guarantee placement, promotion or role transition. Outcomes depend on prior experience, technical depth and market conditions.
Schedule & workload
Eligibility & selection
A bachelor's degree, with a keen interest in rail cybersecurity (this is a Post Graduate Certificate programme).
Open to IT/cybersecurity professionals seeking industry specialisation in railways.
Open to rail professionals, RAMS & safety professionals, developers and project managers advancing into rail cybersecurity.
Basic networking and IT familiarity assumed; a preparatory module supports those without it.
Fees & payment
Total programme fee is ₹100,000 + GST. Pay in three instalments or via EMI through our loan partner. A refundable ₹3,000 registration fee applies at application.
Three instalments — ₹30,000 + GST within 1 week of offer rollout, ₹35,000 + GST within 30 days of class commencement, ₹35,000 + GST within 90 days of class commencement (US $700 per instalment for international students).
EnquireAs low as ₹9,090 + GST per month × 11 months via our loan partner (equivalent to ₹100,000 + GST total).
EnquireFrequently asked questions
We will match you to the right free course or certification route.