Skip to main content

Automotive industry releases vehicle cybersecurity best practices

Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry. The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat de
July 22, 2016 Read time: 2 mins
Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry.     

The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat detection and protection incident response, security by design, awareness and training and more.

The Best Practices provide deep technical and organizational breadth to support, develop, and improve defences against potential cybersecurity threats of the motor vehicle network. They are grounded in ISO, NIST and other established cybersecurity frameworks but are tailored to the motor vehicle. Auto-ISAC members have committed to continuously enhancing the Best Practices over time to keep pace with the constantly evolving cyber landscape.

"Automakers are committed to being proactive and will not wait for cyber threats to materialise into safety risks," said Auto-ISAC chairman Tom Stricker of Toyota.

Related Content

  • Environmental impact assessments - where now?
    February 1, 2012
    Peter George, MVA Consultancy, questions the future direction of environmental impact assessments
  • FASTR consortium releases Automotive Industry Guidelines for Secure Over-the-Air Updates
    November 9, 2017
    A non-profit research consortium dedicated to automotive cyber security, Future of Automotive Security Technology Research (FASTR), has announced the availability of the Automotive Industry Guidelines for Secure Over-the-Air Updates. These guidelines are intended to assist automotive manufacturers and others involved in evaluating platforms for secure updates, describing the threat models, providing recommended cryptographic algorithms and detailing a step-by-step checklist for evaluating state of the art
  • Crossing the line: managing traffic across jurisdictions
    June 18, 2024
    The US will eventually have a fully-digitised transportation network, with traffic management devices talking to each other across massive distances. It’s really a question of pain points on the road to full deployment, explains Mark Talbot of Q-Free
  • Connected vehicles, connected systems equals next generation ITS
    July 17, 2012
    Iteris has been awarded a new contract to lead a team working to update and support the United States’ National ITS Architecture. Pete Goldin reports on this latest initiative to help all US agencies’ development and application of ITS systems The United States Department of Transportation has a set of standards safeguarded for ITS for the US, with a vision for the future of transportation technology called the National ITS Architecture. This may sound like a secret plan kept in a vault somewhere, but the