Skip to main content

Automotive industry releases vehicle cybersecurity best practices

Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry. The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat de
July 22, 2016 Read time: 2 mins
Members of the US Automotive Information Sharing and Analysis Center (Auto-ISAC) have released an overview of comprehensive Automotive Cybersecurity Best Practices, developed as a proactive measure to further enhance vehicle cybersecurity throughout the industry.     

The Executive Summary has been released publicly on the Auto-ISAC website. The Best Practices provide guidance to assist an organisation's development in seven key topic areas, including governance, risk assessment and management, threat detection and protection incident response, security by design, awareness and training and more.

The Best Practices provide deep technical and organizational breadth to support, develop, and improve defences against potential cybersecurity threats of the motor vehicle network. They are grounded in ISO, NIST and other established cybersecurity frameworks but are tailored to the motor vehicle. Auto-ISAC members have committed to continuously enhancing the Best Practices over time to keep pace with the constantly evolving cyber landscape.

"Automakers are committed to being proactive and will not wait for cyber threats to materialise into safety risks," said Auto-ISAC chairman Tom Stricker of Toyota.

Related Content

  • Changing roles in data collection for traffic management
    January 23, 2012
    Transport for Greater Manchester's David Hytch discusses the evolving roles of the public and private sector in managing and disseminating data. Data services for traffic management were once the sole preserve of public sector organisations, they being uniquely placed and equipped for the work involved. Now, though, this is changing. There is even a presumption in some countries that the private sector will take a greater, if not actually a lead, role in the provision of information for transport management
  • Strike action prompts commuters to try something different
    June 2, 2014
    David Crawford highlights responses to transit disruption on both sides of the Atlantic. Shortly before workers at San Francisco Bay Area Rapid Transit (BART) began a lengthy round of pay and conditions-related strikes in summer 2013, impacting on the daily lives of 400,000 communities, online ridesharing group Avego publicised a new web address: bartstrike.com. By the start of the following week, Avego was encouraging stranded commuters to download its smartphone app by offering them the chance in a raffle
  • Infrastructure funding and road user charging – debate continues
    February 1, 2012
    Jack Opiola provides an overview of the ongoing debate over US infrastructure funding and the progress – or lack of it – towards vehicles miles travelled road user charging. The future funding of transportation and mobility infrastructure is attracting increased attention. There has been sharp debate in the US, where landmark reports from the National Surface Transportation Infrastructure Financing Commission and the National Surface Transportation Policy and Revenue Study Commission both stated that the cu
  • Connecting DoTs with IoT for secure, connected transportation systems
    January 11, 2022
    Michelle Maggiore of Cisco outlines how connected roadways and intersections can help improve safety, reduce traffic congestion, and minimise our carbon footprint