Overview
ISO/TS 5616:2024 - Intelligent transport systems: Secure interfaces governance specifies minimum governance procedure requirements for ITS data management and access using secure interfaces, with a strong focus on secure vehicle interfaces. The Technical Specification defines a governance framework - not new technical protocols - to combine existing standards and policy choices consistently so ITS data access is interoperable, auditable and secure. It is aligned with ISO/TC 204 ITS data governance principles and supports coexistence with proprietary OEM communications (e.g., ExVe / ISO 20077‑1).
Key topics and technical requirements
- Minimum governance procedures: Checklist-style criteria to assess existing ITS data management and access paradigms without forcibly changing competent existing arrangements.
- Governance model layers: Multi‑layer approach including general governance, regional governance management committees (RGMC) and application‑domain (service group) operational governance.
- Trust model components: Use of ITS Trusted Devices and trusted third parties (e.g., PKI services) for authentication, privacy and integrity of ITS data access.
- Operational governance elements: Roles and actors, management committee operation, policy decision making, election/ejection procedures, and bylaws for application domains.
- Data access controls and lifecycle: Permission of data owners, access to onboard data, data retention for full functional lifetime and ITS data security requirements.
- Conformance and assessment: Summary of conformance requirements and recommended templates for governance assessment.
- Informative annexes: Principles of governance and pro forma tables/templates to support implementation and policy drafting.
Practical applications and who uses it
ISO/TS 5616:2024 is intended for organizations responsible for ITS data governance and secure interfaces, including:
- Government transport agencies and regulators implementing ITS policy
- Regional governance bodies and RGMCs coordinating interoperability
- Automotive OEMs, Tier‑1 suppliers and telematics providers integrating secure vehicle interfaces
- ITS operators, roadside unit providers and mobility service platforms
- Cybersecurity teams, PKI operators and trusted third parties managing credentials
- Standards bodies and conformity assessors using the checklist for competency reviews
This specification helps stakeholders ensure interoperable ITS data sharing, protect vehicle and user privacy, and manage secure interface governance across regions and service groups.
Related standards (selected)
- ISO 20077‑1 (ExVe / Extended vehicle methodology)
- ISO 21177 (ITS station security services)
- ISO 18541 series (RMI - standardized access to repair & maintenance information)
- ISO 15031‑2 (vehicle–external equipment communication guidance)
Keywords: ISO/TS 5616:2024, Intelligent transport systems, secure interfaces governance, ITS data governance, secure vehicle interfaces, ITS Trusted Devices, PKI, interoperability, ExVe.