Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Los Angeles pilots new travel planning app
    January 27, 2016
    The City of Los Angeles is piloting a new transportation app in partnership with Xerox in an effort to provide travellers with optimised transportation choices to simplify urban mobility in the second largest metro area in the US. The Go LA app aggregates and calculates the time, cost, carbon footprint and health benefits from walking, cycling, driving your own car, parking, taking public transit, as well the emerging private transportation options, such as Lyft, Zipcar, FlitWays and Uber, giving users a
  • NOCoE delivers data for diligent DOTs
    April 29, 2015
    David Crawford talks to Dennis Motiani about the role of the new National Operations Centre of Excellence. Consolidating the collective experience of the US transportation system’s management and operations (TSM&O) community, streamlining its information gathering, while cutting research times and costs are the key drivers behind the country’s new National Operations Centre of Excellence (NOCoE). Launched in January at the annual meeting of the Transportation Research Board (TRB), this sets out to be a sin
  • Iteris joins leadership circle for automated vehicle initiative
    September 10, 2014
    Iteris has joined the University of Michigan as one of 13 companies that includes Denso, Delphi, Econolite, Ford, GM, Nissan, Verizon and Toyota as a founding partner in its Mobility Transformation Center (MTC). The MTC will initiate and execute multiple research programs to advance the technology and policies surrounding new methods of transportation relating to smart vehicles and infrastructure. Iteris plans to collaborate with MTC and the select group of companies to guide the selection of specific re
  • Cold, hard truths
    February 27, 2012
    By comparison with the snow paralysis which hit North America at the beginning of February, and the conditions endured by much of Northern Europe this last winter, it took only the lightest dusting of snow to bring the UK transport system slipping, sliding and then juddering to a halt in January.