Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Transport is evolving – and road safety must keep pace, says Parifex
    May 25, 2023
    France-headquartered Parifex works at the cutting edge of Lidar-based speed control systems. CEO Paul-Henri Renard discusses safety advances made in recent decades - and the causes of accidents that remain…
  • Distraction dominated teen driver accident causes.
    June 3, 2015
    As a new report shows that distracted driving is a bigger cause of accidents than previously thought, Jon Masters asks what should be done to counter this problem. Research carried out by the AAA Foundation for Traffic Safety has shed new light on the dangers of distraction for teen drivers. Six years of study using video analysis has shown that 58% of all crashes involving teen drivers are caused by the driver being distracted and proved that the influence of external factors is stronger than previously th
  • Cross referencing data sets reveals now decision support information
    November 18, 2014
    Combining previously unrelated sets of data can provide an in-depth view of travel patterns. "Through the use of analytical tools, Urban Insights seeks to help transportation organisations benefit from the vast amounts of detailed data they collect every day.”
  • New ticket purchase methods expected to drive advance of US public transit
    April 2, 2015
    New analysis from Frost & Sullivan, Strategic Analysis of the US Automated Fare Collection Market in Rail and Urban Transit Systems, finds that the market earned revenues of US$324.5 million in 2014 and estimates this to reach US$634.8 million by 2021. The rising cost of fare management, coupled with the increasing presence of computing, sensors and connected devices, have made public transit systems more accessible to end users, thus boosting interest in automated fare collection (AFC) systems. With 33