Regulations / Automotive
Regulations by jurisdiction
Automotive: what binds a connected product
Vehicle cybersecurity is a type-approval matter. UNECE R155 requires a certified cybersecurity management system, and ISO/SAE 21434 is how OEMs and their suppliers demonstrate one.
| Framework | Applies when | Who demands it | In force | Penalties |
|---|---|---|---|---|
| ISO/SAE 21434 | Road-vehicle electrical and electronic systems and their components | Type approval via UNECE R155; OEM procurement | 2021 edition; R155 mandatory for all new EU vehicles from Jul 2024 | No type approval, no sale |
ISO/SAE 21434
Cybersecurity engineering across the vehicle lifecycle, from concept through decommissioning, including TARA (threat analysis and risk assessment).
Check your own product
The IoT security scorecard and the requirements generator resolve these frameworks for your product archetype and markets. Educational reference, not legal advice.
← All jurisdictions