Anyone who deals with cybersecurity in the automotive industry will soon be confronted with the abbreviation “TISAX®”. What is TISAX®? The abbreviation stands for Trusted Information Security Assessment Exchange. Automotive manufacturers often develop their products with suppliers. To ensure secure processing and a trustworthy exchange of information between these companies, the German Association of the Automotive Industry (VDA) developed the TISAX® industry standard in 2017.
What is part of the TISAX® audit?
The TISAX® certification (VDA ISA) for automotive suppliers creates information security in companies that is specifically geared to the needs of the automotive industry. The TISAX® catalog of requirements is derived from the international industry standard ISO 27001, but has been expanded. The areas of integration of partners into the company’s own IT infrastructure, data protection and prototype protection have been included specifically for the automotive industry.
Information security is the main module, based on ISO 27001, which is audited during each assessment. The three special modules are added to the assessment as needed. The aim of the “Information Security” module of the TISAX® certification is to ensure that IT security in a company is planned, monitored, audited and continuously improved. This essentially requires three things: standardized processes, automated workflows and audit-proof reports. This is where macmon Network Access Control steps in as an IT security solution.
Network Access Control (NAC) can play an important part in TISAX® certification. Specifically in these sub-areas:
– 1.3 Asset Management
– 1.6 Incident Management
– 2.1 Human Resources
– 4.1 Identity Management
– 5.2 Operations Security
Download the White Paper to get all the information at a glance.