Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Continental and IBM collaborate on connected vehicles
    September 11, 2013
    Continental and IBM are to collaborate on the joint development of fully-connected mobile vehicle solutions for the world’s car manufacturers. Central to the agreement is development of a highly scalable cloud platform that will enable automotive manufacturers to deliver a range of new mobile in-car services. Software updates and vehicle control device functionality will be delivered over the internet, removing costly and inconvenient workshop visits. The companies feel the solution may equally prove be
  • FCC unlocks new airwaves for vehicular radar use
    July 18, 2017
    The US Federal Communications Commission has expanded the spectrum available for vehicular radars that are used for a variety of purposes, including safety applications like collision avoidance and adaptive cruise control. The agency’s action expands the current 76-77 GHz spectrum allocation to include the entire 76-81 GHz band and transitions radars out of the 24 GHz band. This is consistent with the spectrum that is available internationally, avoiding the need to customise the radars in vehicles for diffe
  • Nairobi looks to ITS to ease travel problems
    December 21, 2017
    Shem Oirere looks at plans to tackle chronic congestion in the Kenyan capital. Traffic jams in the Kenyan capital, Nairobi, are estimated to cost the country $360 million a year in terms of lost man-hours, fuel and pollution. According to Wilfred Oginga, an engineer with the Kenya Urban Roads Authority (KURA), the congestion has been exacerbated by poor regulation and enforcement of traffic rules, absence of adequate traffic management systems and poor utilisation of existing road facilities.
  • Dynniq’s FlowSense gives green light for city mobility
    March 19, 2019
    Putting an end to traffic jams – including those involving freight - and improving the air people breathe are major goals for city authorities everywhere. With FlowSense, Dynniq thinks it may have some answers. Adam Hill asks how Sitting in traffic is top of the list of many commuters’ pet hates: a necessary evil, perhaps. But at least it doesn’t kill you - the same can’t be said of toxins in the air. Indeed, the World Health Organisation estimates that 4.2 million deaths worldwide are due to outdoor pol