Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Europe’s EasyWay project accommodates political requirements
    May 29, 2013
    The EasyWay project has evolved to take account of political developments at the European level. By Jason Barnes The European Union’s (EU’s) EasyWay ITS deployment project has its roots in the ambitions of former European Commission President Jacques Delors with regard to truly international networks for energy, information and for transport. Definition of what became known as the Trans-European Transport Network (TEN-T) began back in 1994 with seven working groups. They produced an R&D and policy framework
  • Carlos Moreno: ‘I’ve had a lot of death threats over 15-minute cities’
    May 4, 2023
    Carlos Moreno, inventor of the 15-minute city concept, talks to Adam Hill about misinformation, conspiracy theories and the attraction of ‘human smart cities’
  • USDOT partners with Mobileye in Smart City Challenge
    January 8, 2016
    The US Department of Transportation (USDOT) is to partner with Mobileye to equip the Smart City Challenge winner with crash avoidance technology. Announcing the partnership, Transportation Secretary Anthony Foxx said the winning city's public bus system will receive the installation of Mobileye's Shield+ technology on every bus. This is in addition to U.S. DOT's award of up to US$40 million and an award of up to US$10 million from the Challenge’s launch partner, Vulcan Philanthropy.
  • Where is tolling tech taking us?
    September 25, 2019
    From DSRC and RFID to GNSS or smartphones – which technology is ‘best’ for tolls, charging and pricing schemes? In the first of two articles, Josef Czako examines the options