Case Study
Donnerstag, 25. September
08:55 - 09:20
Live in Berlin
Weniger Details
This session delves into the challenges and solutions for implementing and managing product cybersecurity governance in a heavily regulated sector as railway. As integral members of the Competence Center for Product Cybersecurity, the speakers will discuss establishing secure development lifecycle guidelines, integrating supply chain security and incident response, that align with the business objectives and enable compliance with the European cybersecurity regulations.
In this session, you will learn more about:
Amelia Alder is a lawyer specialized in security matters. She currently serves as Cybersecurity GRC Manager at Knorr-Bremse, where she leads legal analyses and cross-functional collaboration to implement the NIS2 Directive and the proposed Cyber Resilience Act across a global organization. Amelia holds an LL.M. in International, European, and Economic Law – cum laude distinction – and a Master’s in Law, Crime, and Information Systems from the University of Lausanne. Her career spans roles at eBay, UNITAR, and international legal institutions, with a focus on digital resilience, sustainable development, and legal innovation. Amelia is known for her ability to translate complex legal frameworks into actionable strategies and communicate effectively across diverse audiences.
Lola Fernandez Gonzalez is Head of Governance and Risk Management for Product Security at Knorr-Bremse Rail Vehicle Systems, where she leads the implementation of cybersecurity governance and secure development lifecycle practices across global product lines. Lola also represents the company in key international industrial and railway cybersecurity standardization groups in IEC and CENELEC. With over two decades of experience in embedded systems, software engineering, and product security, Lola brings a unique blend of technical depth and strategic leadership. Her previous roles at Knorr-Bremse España where she started as software engineer, included managing international software teams, aligning development processes with industry standards.