What is TISAX?
TISAX (Trusted Information Security Assessment Exchange) is a standardized information security assessment mechanism developed specifically for the European automotive industry. It was created by the German Association of the Automotive Industry (VDA) and is managed by the ENX Association.
Purpose
TISAX enables automotive manufacturers and their supply chain partners to share information security assessment results through a trusted exchange platform. This reduces audit fatigue by allowing a single assessment to satisfy the requirements of multiple OEMs.
Key Features
- Standardized assessment based on the VDA ISA catalog
- Three assessment levels (AL1, AL2, AL3) based on protection needs
- Three-year validity with mutual recognition
- ENX portal for sharing and verifying results
- Covers information security, prototype protection, and data privacy
Who Needs TISAX?
Any organization in the automotive supply chain that processes sensitive information from OEMs may be required to obtain TISAX certification. This includes tier-1 and tier-2 suppliers, engineering service providers, and IT service providers serving the automotive sector.
Back to Glossary