Skip to main content

Automotive industry releases vehicle cybersecurity best practices

Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry. The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat de
July 22, 2016 Read time: 2 mins
Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry.     

The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat detection and protection incident response, security by design, awareness and training and more.

The Best Practices provide deep technical and organizational breadth to support, develop, and improve defences against potential cybersecurity threats of the motor vehicle network. They are grounded in ISO, NIST and other established cybersecurity frameworks but are tailored to the motor vehicle. Auto-ISAC members have committed to continuously enhancing the Best Practices over time to keep pace with the constantly evolving cyber landscape.

"Automakers are committed to being proactive and will not wait for cyber threats to materialise into safety risks," said Auto-ISAC chairman Tom Stricker of Toyota.

Related Content

  • Terrestrial solution to stellar shortcomings
    December 5, 2013
    Inherent weaknesses in satellite communications are leading several countries to re-evaluate terrestrial-based backup systems. There is a tale frequently told in satellite navigation circles, of how landing systems at Newark Airport were disrupted by a truck driver using GPS jamming equipment as he drove along the New Jersey Turnpike. While there was no threat to flight safety as the interference to GPS reference stations being tested, the story highlights how apparently benign threats have the potential t
  • TRL to evaluate road safety performance in the Sultanate of Oman
    December 4, 2012
    The UK’s Transport Research Laboratory (TRL) has been commissioned by the Royal Oman Police (ROP) to undertake a study covering all aspects of road safety within the Sultanate of Oman. TRL’s team of experts will conduct a high level multi-sector assessment of existing road safety activity in the Sultanate. The review will evaluate the Sultanate’s road safety performance, comparing existing activities against best practice across twelve different disciplines including road safety management, safety engineeri
  • In-vehicle systems as enforcement enablers?
    January 30, 2012
    From an enforcement perspective at least, Toyota's recent recalls over problems with accelerator pedal assemblies had a positive outcome in that for the first time a major motor manufacturer outside of the US acknowledged publicly what many have known or suspected for quite a while: that the capability exists within certain car companies to extract data from a vehicle onboard unit which can be used to help ascertain, if not prove outright, just what was happening in the vital seconds up to an accident or cr
  • Transport in the round
    October 13, 2015
    The ITF’s Mary Crass tells Colin Sowman why future transport demands will require governments to overcome the silo effect of individual single-modal authorities. The only global multimodal transport policy organisation,” is how Mary Crass describes the International Transport Forum (ITF), which is housed at the Organisation for Economic Cooperation and Development (OECD). As head of policy and summit preparation at the ITF she says: “All other organisations are either regional or have a modal focus, we cove