TISAX® Alignment Service

If you want to supply parts, components, or services to major German manufacturers, TISAX isn’t optional, it’s the price of entry. No certificate, no contract.

The challenge

What is TISAX?

The automotive industry produces a great deal of data across the design, testing and production lifecycles. This includes security data generated during all phases of the lifecycle. To help streamline security evaluations of manufacturers, service providers and suppliers to the Automotive sector, the Association of the Automotive Industry in Germany (VDA) set up TISAX.

The automotive industry’s security standard

These security requirement classifications, on international information security management system (ISMS) standards like ISO/IEC 27001 are now used by European automotive companies. Since 2017 it has become mandatory for automotive suppliers to comply. TISAX establishes a common assessment and exchange mechanism for evaluating supplier’s security capabilities.

Who requires TISAX?

Organisations that process sensitive information on behalf of Automotive customers, such as while providing parts, components or services, they must implement and maintain an Information Security Management System (ISMS). After which your organisation will need to pass the corresponding level of TISAX audit to continue to contract with the (German) automotive market.

The service

BH Consulting have specialist expertise and experience in providing TISAX alignment services.

BH Consulting have specialist expertise and experience in providing TISAX alignment services. We work with organisations to build out an Information Security Management System (ISMS) and help put in place the security controls to meet TISAX requirements.

TISAX closely aligns with ISO/IEC 27001 but has some additional automotive industry specific controls, particularly focused on the supply chain and specific to the Automotive industry.

TISAX controls are outlined in VDA ISA (Information security assessment) catalogue and focus on the following 3 modules:

Information Security

  • This is a basic module for every assessment carried out and is based on the ISO 27001 Information Security Standard.

Data protection

  • This module is relevant where the supplier processes the personal data of customers (Art. 28 of GDPR).

Prototype protection

  • This module is relevant to vehicles, components and parts which are classified as requiring protection. The emphasis of the requirements is on implementation of physical measures.
 

Benefits

TISAX compliance provides competitive advantage in the Automotive sector and helps with the renewal of existing supplier contracts

Helps to improve business processes and keep confidential data secure

Addresses automotive-specific requirements and establishes a common level of information security in the industry

Testimonials

Why get in touch with BH Consulting

BH Consulting is a trusted, independent cybersecurity and data protection consultancy with over 20 years of experience. Whether you need expert guidance on compliance, risk management, or security strategy, our team delivers practical, vendor-neutral advice tailored to your needs.

Let’s start a conversation about securing your business.

Areas of interest*