Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Here announces connected vehicle breakthrough
    October 10, 2016
    Here, the global location technology company, is at the ITS World Congress with a major breakthrough in connected cars. At this year's Paris Motor Show, the company announced that Audi, BMW and Mercedes- Benz will supply Here, which they jointly own, with real-time sensor data collected by their cars to enable systems to better understand their surroundings. The deal marks the first time a trio of leading brands have agreed to share data, and could indicate the beginning of a proper connected car industry.
  • Deaths of US pedestrians rise sharply, says GHSA report
    April 2, 2019
    Pedestrian deaths across the US have risen to their highest number in nearly 30 years. Many factors are responsible - including the rise and rise of SUVs - according to a worrying new GHSA report ore pedestrians died on US roads last year than in any year since 1990. The Governors Highway Safety Association (GHSA) suggests that 6,227 pedestrians were killed in 2018 – a 4% increase on 2017. Pedestrian deaths as a percentage of total motor vehicle crash deaths increased from 12% in 2008 to 16% in 2017, whi
  • Volkswagen: ‘CO2 issue largely concluded’
    December 10, 2015
    Just a month after questions relating to the CO2 figures measured on some of the Group's models arose, Volkswagen claims it has largely concluded the clarification of the matter. Following extensive internal investigations and measurement checks, it is now clear that almost all of these model variants do correspond to the CO2 figures originally determined. This means that these vehicles can be marketed and sold without any limitations. The suspicion that the fuel consumption figures of current productio
  • GTT launch new service for emergency services to get priority control at intersections
    November 7, 2017
    Global Traffic Technologies (GTT) has introduced an Opticom Priority Control as a Service (PCaas) to Police, Fire and Emergency Medical Services (EMS) departments to enable priority control at intersections and get vehicles to the scene of an emergency quickly and safely. The technology provides departments with the same priority control while GTT supplies equipment for installation and maintenance. Mike Haldane, GTT's vice president of global marketing said the company discovered the need for PCaaS after