Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Ride-hailing and taxi drivers could face tougher criminal checks in England
    February 14, 2019
    Drivers who ply their trade on apps such as Uber could be under greater scrutiny as part of proposals being put forward by the UK government. The potential risk to passengers from the explosion of ride-hailing apps, as private-hire drivers are perceived to receive less thorough vetting – for example, to flag up past convictions – has long been argued. Incidents such as the murders of passengers by a Didi driver in China heightened such concerns - although critics point out that a US Uber driver who ad
  • Polis: the role of cities and regions on road vehicle automation
    January 31, 2018
    Local and regional authorities and public transport providers need to play a more prominent role in the development of policy around autonomous vehicles (AVs), according to a new paper from Brussels-based Polis. Called Road Vehicle Automation and Cities and Regions, the study aims to raise awareness of AV developments and their potential mobility impact among city and regional administrations and to assist them in setting transport policies. In addition, Polis intends to increase awareness of transport
  • V2X: The design challenges
    May 2, 2018
    The connected future throws up a number of enticing possibilities for us all. But, says Houman Zarrinkoub of MathWorks, issues around visualisation, prototyping and model evolution need to be examined carefully. We are all aware of the huge amount of investment going into driverless car technologies. With the likes of Volvo, Tesla and BMW getting in on the act, soon they will be a common sight on our roads. However, for this to occur, the vehicles must be able to connect with each other and ensure driver
  • Turning information into stories
    April 16, 2018
    IBTTA says its TollMiner tool can transform transportation planning. Here, the tolling organisation explains how it works – and what part it might play in Donald Trump’s infrastructure plan. Imagine being able to turn the black-and-white numbers in a spreadsheet into graphics and visualisations that tell a compelling story about essential transportation infrastructure. Having easy access to the solid, reliable data you need to plan surface transportation projects and assign project resources based on