Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • ITS America applauds V2I infrastructure Act
    June 5, 2015
    Regina Hopper, president and CEO of ITS America, has responded to the introduction of the Vehicle-to-Infrastructure Safety Technology Investment Flexibility Act of 2015 by US Senators Gary Peters and Roy Blunt. The Vehicle-to-Infrastructure Safety Technology Investment Flexibility Act of 2015 authorizes states to use existing surface and highway transportation funding provided by the National Highway Performance Program, the Surface Transportation Program and the Highway Safety Improvement Program to in
  • European Commissioner blasts auto industry on defeat device scandal
    July 12, 2016
    Speaking at the FIA summer cocktail party, European Commissioner Elżbieta Bieńkowska compared the emissions defeat device scandal to the banking crisis and proposed a three step programme to ensure that market confidence is restored. She insisted on the need for the auto industry to show all their cards so that constructive progress could be made. Her plans include the need to reform the EU's type-approval and market surveillance system. She also endorsed long-term investment in a low-carbon transport syst
  • US$144 billion market forecast for multi-motor electric vehicles
    July 10, 2014
    The latest Electric Motors for Hybrid and Pure Electric Vehicles 2015-2025: Land, Water, Air report from IDTechEX finds that a US$144 billion market awaits in 2025, boosted by 8.9 million extra motors for multi-motor vehicles, most of them land vehicles - particularly cars - with industrial-commercial vehicles following close behind. Primary author Dr Peter Harrop notes, "Nevertheless, largest profit may be made in military and other segments. In some segments you are likely to be competing with your cus
  • Grey areas: who's legally responsible for C/AVs?
    October 22, 2018
    Connected and autonomous vehicles are an exciting development in the ITS sector – but amid the hype some big questions about their deployment remain unanswered, finds Ben Spencer Connected and autonomous vehicles (C/AVs) have the potential to change the way we travel - and to eliminate road fatalities. But policy makers and regulators will need to ensure user and public safety is included in future planning. The legal and insurance industries will have to catch up, too. For example, questions over who is