Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Report analyses multiple ITS projects to highlight cost and benefits
    March 16, 2015
    Every year in America cost benefit analysis is carried out on dozens of ITS installations and pilot studies and the findings, along with the lessons learned, are entered into the Department of Transportation’s (USDOT’s) web-based ITS Knowledge Resources database. This database holds more than 1,600 reports and periodically the USDOT reviews the material on file to draw conclusions from this wider body of evidence. It has just published one such review ITS Benefits, Costs, and Lessons Learned: 2014 Update Re
  • Annika Lundkvist of Pedestrianspace.org: "How are you moving today?"
    March 8, 2024
    It’s easy to say that people should embrace active travel – but it’s often not as simple as that. Advocates must beware of a disconnect with people’s lives and options on the ground, says Annika Lundkvist
  • D’Artagnan to develop road map for US RUC consortium
    January 29, 2016
    The Western Road Usage Charge Consortium (WRUCC) of the US has appointed sustainable transportation funding specialist D’Artagnan to develop a roadmap for states to consider road usage charges. Eleven WRUCC member states will collaborate to study and adapt best practices from successful road usage charge efforts around the globe Road usage charging (RUC) has grown in popularity in recent years among state government officials in search of long-term solutions to address declining gas tax revenues. However, t
  • Professional training key to the future of ITS
    May 21, 2012
    A substantial portfolio of resources is available and expanding, to help employers and professionals build essential skills for current and future needs – the ITS Professional Capacity Building Program. Pete Goldin reports. The US Department of Transportation (USDOT) views ITS as key to the future of transportation, as is evident from the department’s ITS Professional Capacity Building (PCB) program. This is a further manifestation of USDOT’s commitment to ITS. The PCB program provides anyone in the transpo