Back to Frameworks
Industry

TISAX

TISAX (Trusted Information Security Assessment Exchange) is an information security assessment standard built for the automotive industry, based on the VDA Information Security Assessment (ISA) catalog.

Rather than every OEM running its own supplier security audit, a supplier completes one TISAX assessment through an approved provider and shares the results with multiple manufacturers via the ENX portal. Scope can extend beyond standard information security to prototype protection and data protection, reflecting how sensitive automotive design data is.

See how LumiGRC handles TISAX

Get a Demo
1

Assessment, shared with many OEMs

0%
Typical certification profile
Audit Rigor71%
Time to Certify76%
Surveillance Burden69%
Issued & Enforced By

ENX Association

VDA ISA Catalog

Key Points

  • Based on the VDA Information Security Assessment (ISA) catalog
  • One assessment shared across multiple OEMs via the ENX portal
  • Common requirement throughout the automotive supply chain
  • Can include prototype and data-protection scopes