Hold more than one standard? One audit.
TISAX shares its structure with ISO/IEC 27001. We audit them together — one team, one visit, one report.
The automotive industry's information security assessment based on VDA ISA — required by German OEMs before sharing prototypes, data and projects with suppliers.
TISAX assessments verify information security, prototype protection and data protection at defined assessment levels. Results are shared through the ENX exchange platform, so one assessment serves all participating OEMs.
VDA ISA controls at AL2 or AL3.
Physical and organisational protection of prototypes.
GDPR-related requirements.
Scope and depth matched to OEM requirements.
Results shared with authorised partners.
TISAX is audited against these requirement areas. Open each one to see what auditors look for in your company.
TISAX shares its structure with ISO/IEC 27001. We audit them together — one team, one visit, one report.
Scroll the steps — the bar shows where you are in the process. Every step has a named coordinator and a fixed timeline.
You send a short application; a coordinator sizes the audit and sends a fixed offer.
→ Offer with audit planDocumentation review and readiness check — remote or on site. Gaps are listed, not penalised.
→ Readiness reportOn-site assessment of implementation and effectiveness with a team that knows your sector.
→ Audit reportIndependent certification decision; the certificate is issued and entered into the public register.
→ TISAX certificateAnnual surveillance keeps the certificate in force; re-certification in year three.
→ Certificate maintainedTick what you already have. You do not need a perfect system to apply — you need a working one.
Based on the items ticked on the left. Indicative — the Stage 1 audit gives the formal picture.
Apply for TISAX →Did not find yours? Call us — a coordinator answers within the same business day.
+38 (044) 332-30-76Send an application — we define scope and audit duration, and issue a fixed offer within one business day.