Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Moxa Europe establishes Moxa University
    May 22, 2015
    Moxa Europe has developed a training programme that addresses the needs of its customers, partners and employees. The new Moxa University is a formal education and certification program to communicate knowledge of network design, installation and maintenance to Moxa´s distribution partners. It aims to ensure smooth knowledge transfer across the supply and value chains, from the developers of Moxa products to the customer´s network administrators. Steve Lin, Moxa Europe's general manager, decided to es
  • Fully autonomous vehicles ‘spur LiDAR sensors mass adoption’
    January 26, 2017
    Cost-effective, high-resolution light detection and ranging (LiDAR) sensors capable of long-range object detection will be necessary for high to fully-automated driving applications. Demand for 3D mapping and imaging, better overall performance, automated processing of graphic data gathering and self-sufficient sensor with best-in-class performance in low-visibility conditions are factors driving the development and adoption of LiDAR sensors within the advanced driver assistance systems (ADAS) sensor suite
  • Idris paves the way for loop based speed enforcement
    February 1, 2012
    With the Idris system now validated as a speed verification tool, the way is open for loops to be used in more complex enforcement applications. Diamond Consulting Services (DCS), developer of the Idris inductive loop-based vehicle detection and classification system, has recently successfully conducted validation trials which, the company says, open the way for Idris to be used for speed verification and loop-based sensors to be used for more complex applications such as speed-on-green and differential spe
  • UK road safety’ is stagnating’ – IAM and RoSPA call for new strategy
    July 1, 2016
    Independent road safety charity IAM RoadSmart and safety charity the Royal Society for the Prevention of Accidents (RoSPA) have called for government action following the release of the Department for Transport’s (DfT) reported road casualties in Great Britain 2015. The 2015 figures show there were 1,732 reported road deaths – two per cent fewer compared with 2014. According to the DfT, this is the second lowest annual total on record after 2013. The number of people seriously injured in reported road tr