Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Autonomous driving – what can we really expect?
    June 6, 2016
    Dave Marples of Technolution BV looks beyond the hype to the practical implementation of autonomous vehicles. Having looked at the development of this sector for some time, I am concerned about the current state of autonomous driving development as engineering (and marketing) have run way ahead of the wider systemic, and legislative, requirements to support an autonomous future.
  • Innovation without the chaos
    July 23, 2025
    Effective governance is required to ensure that artificial intelligence remains an asset rather than a liability, says Rafael Hernandez of IntelliRoad. He lays out his case here…
  • Substantial demand ‘underscores need for TIGER grants’
    August 3, 2015
    US Transportation Secretary Anthony Foxx has announced that applications to the US Department of Transportation (DOT) for its seventh round of Transportation Investment Generating Economic Recovery (TIGER) grants totalled US$9.8 billion, almost 20 times the US$500 million set aside for the program, demonstrating the continued need for transportation investment nationwide. Among the 625 applications for grants received this year, 60 per cent are road projects, 18 per cent are transit projects, and eight p
  • Transportation infrastructure technology continues its advance
    July 17, 2012
    It is now 20 years since publication of the Strategic Plan for Intelligent Vehicle Highway Systems. A select group of luminary figures of the ITS industry give their assessment of progress to date This year the IVHS Strategic Plan turns 20, signaling the graduation of the field of Intelligent Transportation Systems from its tumultuous teens to young adulthood. After two decades tethered by the cords of youth and protected by the strict control of adult institutions, ITS has reached a turning point. Its y