Cybersecurity in the automotive industry
The increasing connectivity of vehicles is also bringing the topic of cybersecurity into focus for automotive manufacturers and suppliers. Cybersecurity is crucial to ensure both the safety and integrity of road users and the protection of sensitive data.
Implementation deadlines for the ISO/SAE 21434 standard
As the automotive industry increasingly faces cyber threats targeting vehicles and production lines, regulators such as the United Nations Economic Commission for Europe (UNECE) Working Party 29 (WP.29) have issued mandatory cybersecurity regulations. As a supplier, we support automotive manufacturers in achieving market approval for their vehicles by developing in line with the state of the art. The leading standard is ISO/SAE 21434 "Road Vehicles - Cybersecurity Engineering". All cybersecurity requirements are implemented by our Cybersecurity Competence Center.
ISO/SAE 21434 provides a comprehensive, risk-based approach to cyber security in the automotive industry. It covers the entire life cycle from concept to vehicle decommissioning. Since July 2024, compliance with the ISO/SAE 21434 standard has been mandatory for all new vehicles. WITTE has set clear guidelines and is continuously developing them further to ensure compliance and security.
Safety standards and corporate practices at WITTE
In order to meet the strict requirements, we have established a cybersecurity management system (CSMS) and structured its organization in such a way that we implement the standard of technology, including ISO/SAE 21434 and the ASPICE for Cybersecurity Extension. This ensures that our development and post-development processes are protected against maliciously motivated attacks. WITTE specializes in the security-by-design development of vehicle access systems and complies with the ISO/SAE 21434 standard, which requires effective incident management in addition to risk management and a secure development lifecycle. WITTE has introduced both an internal and an external Automotive Defense Service Desk for cybersecurity support in field operations and vulnerability reporting.

Holistic approach to cybersecurity compliance in detail
At an organizational level, we implement processes and guidelines, train our teams and set up security measures for our IT infrastructure. At project level, we plan and manage all project-specific cybersecurity activities that can be tailored to the individual security needs of our customers. This also involves WITTE coordinating cybersecurity activities with subcontractors where necessary. During the engineering phase, we carry out risk analyses, develop security concepts and test them thoroughly. After development, we take care of secure production and transfer to field operation. We also plan cybersecurity support, the end of support and the safe decommissioning of our products.