Skip to main content

Automotive industry releases vehicle cybersecurity best practices

Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry. The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat de
July 22, 2016 Read time: 2 mins
Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry.     

The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat detection and protection incident response, security by design, awareness and training and more.

The Best Practices provide deep technical and organizational breadth to support, develop, and improve defences against potential cybersecurity threats of the motor vehicle network. They are grounded in ISO, NIST and other established cybersecurity frameworks but are tailored to the motor vehicle. Auto-ISAC members have committed to continuously enhancing the Best Practices over time to keep pace with the constantly evolving cyber landscape.

"Automakers are committed to being proactive and will not wait for cyber threats to materialise into safety risks," said Auto-ISAC chairman Tom Stricker of Toyota.

Related Content

  • Xilinx releases automotive qualified Zynq Ultrascale+ MPSoC family
    March 28, 2018
    Xilinx has made its XA Zynq UltraScale+ MPSoC family available to assist in the development of safety-critical advanced driver assistance systems (ADAS) and autonomous driving systems. It is said to deliver the right performance/watt while integrating critical functional safety and security features and is aimed at a range of automotive platforms. The product integrates a feature-rich 64-bit quad-core ARM Cortex-A53 and dual-core ARM Cortex-R5-based processing system and Xilinx programmable logic
  • USDOT makes funds available to strengthen transit safety
    May 15, 2013
    The U.S. Department of Transportation's (DOT) Federal Transit Administration (FTA) is making US$21.9 million available to help strengthen public transportation safety for millions of passengers and transit workers nationwide. In addition, the agency also announced a flexible new policy, known as safety management systems (SMS), which the USDOT has officially adopted to help guide states and transit agencies in managing safety risks in a proactive, cost-effective way.
  • TomTom provides flexibility for Riyadh
    June 1, 2016
    With five years of traffic disruption ahead and an inadequate traffic monitoring system, the authorities in Riyadh needed a solution – and quickly. In preparation for embarking on what is currently the world’s largest metro construction project, the Arriyadh Development Authority (ADA) in Riyadh needed to put in place measures to minimise the additional congestion and travel delays the five-year project would inevitably cause.
  • Less than 1% of UK drivers aware of hacking threats – new research
    October 31, 2018
    Nearly all UK drivers with keyless technology are unaware of the major digital threats posed by hackers, according to research conducted by MoneySuperMarket. The study reveals that 99% of drivers are unaware of security flaws such as phone phishing, where hackers send emails to drivers which contain malicious links that connect to a car’s Wi-Fi features and take control. MoneySuperMarket says 16% of drivers - or someone they know - have experienced car hacking. Also, eight out of 10 drivers do not k