<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=7847562&amp;fmt=gif">
Home > Sectors

Physical access governance for transport

Transport infrastructure never sleeps, and neither does the need to enter it: relay houses along the track, traction substations, depots, tunnel service buildings, traffic control cabinets and station technical rooms. Key2XS connects your identity and access management system to your iLOQ or ASSA ABLOY CLIQ keys, so access across the whole network is governed by identity, bounded by role, and provable after the fact.

Request a demo

Where a key is a safety issue

In most sectors, an unmanaged key is a security risk. In transport it is also a safety risk. Whoever can open a relay house, a traction substation or a tunnel service door is physically close to systems that keep vehicles moving and people safe. Knowing exactly who can be where is not an administrative nicety, it is part of operating responsibly.

The operational reality works against that knowledge:

Every gap between who should have access and who can get in is a gap in both your security posture and your safety case.

CER and NIS2 name transport explicitly

Transport is one of the sectors explicitly in scope of both the CER Directive and NIS2. CER requires critical entities to strengthen the resilience of their physical infrastructure against sabotage and other threats. NIS2 requires appropriate policies for access to premises, because physical entry to a relay house or control room can compromise the digital systems inside.

For a transport operator, the practical test is simple: can you show, for any location and any date, who held access rights, on whose authority, and when those rights changed? Key2XS makes that a query instead of a project. Every key right traces back to an identity, a role and an approval, in one tamper-evident audit trail.

How transport operators use Key2XS

Key2XS is middleware between the IAM system you already run and the digital locking system already on your infrastructure. Nothing about your locks, keys or locking plan changes.

A typical flow: a contractor is engaged for switch maintenance on a corridor. The crew members are registered in the IAM under the project, and Key2XS translates the project assignment into key rights for exactly the relay houses and technical buildings on that corridor. Crew composition changes mid-project: the change in the IAM updates the key rights in near real-time. When the project ends, every crew member's access ends with it, at every layer of subcontracting, because the rights follow the registration rather than the metal.

For your own field staff, access follows team and region assignments the same way, and the leaver process that disables accounts also closes every door on the network in the same movement.

Implementation respects operational tempo: a standard integration is live in under two hours through pre-built connectors, with no custom development and no downtime for running systems.

Works with what you already run

The platform is engineered for 99.99% availability, matching an environment where operations run around the clock, and all communication is encrypted with TLS 1.3 in transit and AES-256 at rest.

Frequently asked questions

Physical access governance for transport, answered.

See it working across your network

Get a guided walkthrough of how identity, policy and physical keys come together, from the depot to the far end of the line.