Skip to content

Stage 1 Proposal: OSCAL4Rail - #380

Open
JensGrote wants to merge 1 commit into
OpenRailAssociation:mainfrom
JensGrote:new-project-oscal4rail
Open

Stage 1 Proposal: OSCAL4Rail#380
JensGrote wants to merge 1 commit into
OpenRailAssociation:mainfrom
JensGrote:new-project-oscal4rail

Conversation

@JensGrote

Copy link
Copy Markdown

Stage 1 Incubation Proposal: OSCAL4Rail

OSCAL4Rail is an open standard and toolset for making railway governance machine-readable, schema-validated, versionable, and diffable — built on NIST OSCAL.

Summary

What it does

Railway companies translate legal requirements (EU TSIs, national regulations) into internal IT governance. Today this is scattered across PDFs — interpreted individually, applied inconsistently. OSCAL4Rail makes these rules machine-readable, deterministic, and AI-agent-ready via a 4-layer framework:

  1. Catalog — railway profile over NIST OSCAL
  2. Rules — applicability logic (Rulemapping format)
  3. Change Impact — structured change notifications
  4. Assessment — railway profile over NIST OSCAL Assessment Layer

Proof of concept

Working prototype built in 24h at Hack4Rail: Complete OSCAL4Rail implementation for Swiss BS-KI (42 controls, validated against NIST JSON Schema).


Discussed and agreed with @cornelius (Cornelius Schumacher) prior to submission.

OSCAL4Rail is an open standard and toolset for making railway
governance machine-readable using NIST OSCAL.

Originated at Hack4Rail 2026 (team A38).
Submitted by DB Systel GmbH, with SBB and ÖBB participation.
@cornelius

Copy link
Copy Markdown
Member

Here is the review of the repo:
2026-08-11-oscal4rail-stage1.pdf

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants