Streamline ISO Consultants

  • Home
  • Security & AI
    • ISO 27001 Information Security
    • ISO 42001 AI Management
    • Cyber & Information Security Advisory
    • Essential Eight
    • SOC 2
    • TISAX
  • ISO Consulting Services
    • ISO Consultants Australia
    • ISO 9001 for US Companies
    • ISO Mentoring
    • Independent ISO Internal Audit Services Australia (Clause 9.2)
    • ISO Gap Analysis Audits: Know Where You Stand Before Stage 1
    • ISO Certification Auditors
    • ISO System Development
    • ISO Management System Maintenance & Ongoing Support
  • ISO Standards
    • ISO 9001 Quality Management
    • ISO 45001 Occupational Health and Safety
    • ISO 14001 Environmental Management
    • ISO 17025 Testing and Calibration
    • HACCP Food Safety
    • ISO 19443 Nuclear Supply Chain
  • Resources
    • All Articles
    • ISO Clause Guides
    • Quality Quotes
  • About
    • ISO FAQs
    • Quality Policy
    • Client Testimonials
    • ISO 9001 Certificate
  • Contact
    • Business Info
    • Privacy Policy

By Streamline ISO Consultants

What is TISAX? The Security Standard for Automotive Suppliers

If you supply the automotive industry, particularly European or German manufacturers, sooner or later you will be asked for a TISAX label. TISAX (Trusted Information Security Assessment Exchange) is how the automotive sector assures information security across its supply chain. Here’s what it is, how it’s assessed, and how Australian suppliers prepare. In the assessments I’ve been involved with, the request nearly always lands with a tight deadline attached. The suppliers who cope best are the ones who had already made information security business-as-usual, long before a customer came asking.

Automotive specialist reviewing quality standards
TISAX assessments span three assessment levels (AL 1 to AL 3), and a completed TISAX label is typically valid for three years.

What is TISAX?

TISAX is an industry assessment and exchange mechanism governed by the ENX Association on behalf of the German automotive industry association (VDA). Rather than every car maker auditing every supplier, suppliers undergo one standardised assessment and share the result (a TISAX label) with the manufacturers they work with. It’s built on the VDA ISA (Information Security Assessment) catalogue, which is closely aligned with ISO 27001.

Assessment levels and objectives

TISAX assessments come in three assessment levels (AL 1 to AL 3) reflecting the depth and rigour required. Higher levels involve on-site or more thorough evidence. You’re also assessed against specific assessment objectives, which commonly include information security, the protection of prototypes, and data protection, depending on what you handle for your customers.

How the TISAX process works

  • Register on the ENX TISAX portal and define your assessment scope and objectives.
  • Self-assess your information security against the VDA ISA catalogue and close the gaps.
  • Be assessed by an ENX-accredited TISAX audit provider.
  • Share your result (the TISAX label) with your customers through the exchange. Labels are typically valid for three years.

TISAX and ISO 27001

Because the VDA ISA is built on the same foundations as ISO 27001, an ISO 27001-aligned information security management system gets you most of the way to TISAX. If you already hold or are building ISO 27001, preparing for TISAX is largely a matter of mapping to the VDA ISA catalogue and addressing the automotive-specific requirements (such as prototype protection). The gap I most often find in otherwise solid ISO 27001 shops is exactly that prototype piece: physical controls around pre-release parts, camera and photography rules on the floor, tighter visitor management. It rarely gets attention until an automotive customer puts it on the table.

How Streamline helps

We provide TISAX readiness for Australian automotive suppliers: building your information security management system on an ISO 27001 base, mapping it to the VDA ISA, and getting you ready for the formal assessment. We prepare you for the assessment; the assessment itself is conducted by an ENX-accredited provider.

Frequently asked questions

Is TISAX the same as ISO 27001?

No, but they’re closely related. TISAX is the automotive industry’s assessment based on the VDA ISA, which aligns with ISO 27001. An ISO 27001 system is a strong foundation for TISAX, but TISAX adds automotive-specific requirements.

Do Australian suppliers need TISAX?

If you supply European or German automotive manufacturers, very likely. It’s commonly a contractual requirement. If you don’t, ISO 27001 is usually the more appropriate, broadly recognised choice.

Related reading

  • TISAX readiness & advisory
  • ISO 27001 information security
  • ISO 27001 certification cost & timeline

Speak with an experienced ISO auditor

Need TISAX for an automotive customer? Email hello@streamline.business or call us:

  • Brisbane 07 3667 8280
  • Sydney 02 8315 7780
  • Melbourne 03 9034 3990
General guidance only. This article is general information, not legal, financial, safety or compliance advice, and it does not take account of your specific circumstances. Streamline ISO Consultants are ISO management-system consultants, not lawyers or licensed advisers. Standards, laws and regulator guidance change, and details were correct only at the time of writing. Always seek professional advice before acting. See our full Disclaimer.

Stay in the Loop

Get an email when we post an article. Your email address will not be used for marketing, and you can unsubscribe at any time.

We handle your details in line with our privacy policy.

More ISO Certification Information

  • ISO Frequently Asked Questions
    Frequently Asked Questions: ISO FAQs
  • Consultant guiding a business owner through their ISO management system at a laptop
    ISO Mentoring: Expert Guidance for DIY ISO Systems
  • ISO 27001 information security risk analysis
    ISO 27001 Consulting, Internal Audits & Mentoring
  • Policy advisor reviewing cyber security requirements
    The Quick Guide to Australian Cyber Security Policies
  • Tilt-shift miniature of four figures with torches examining an open server rack while a wall clock shows a few minutes to midnight
    Origin Says the Breach Is "Potential". That Word…
  • Manager reviewing a budget spreadsheet
    ISO 27001 Certification Cost & Timeline in Australia…
  • ISO 14001 environmental management
    ISO 14001 Consulting, Environmental Audits and Mentoring
  • Tilt-shift miniature of an AI data centre and microchip: AI tools and ISO 42001
    ISO 42001 AI Management Consulting, Audits & Mentoring
  • ISO 45001 workplace safety inspection
    ISO 45001 Consulting, Safety Audits and Mentoring

Filed Under: Articles Tagged With: #informationsecurity

Quick Information Request

Brisbane ISO Consultants

Level 14, 167 Eagle St
Brisbane Queensland 4000
Phone: 07 3667 8280
Email: hello@streamline.business

Sydney ISO Consultants

Level 5, 20 Bond Street,
Sydney NSW 2000
Phone: 02 8315 7780
Email: hello@streamline.business

Melbourne ISO Consultants

Level 8, 350 Collins Street
Melbourne, Victoria 3000
Phone: 03 9034 3990
Email: hello@streamline.business

Client and partner logos

KEY ISO ARTICLES

Articles, Deep Dives & More
Frequently Asked Questions
Quality Quotes
Funding Grants for ISO Certification
ISO Consultants
Strategic Planning - Mystical Art?
ISO Certification Auditors
How to get ISO 9001 Certification
ISO Certification Cost
How to tell if your ISO Cert is fake
4-year-olds and Root Cause Analysis
Fast ISO 9001 Certification
The Ultimate Guide to ISO 9001 Audit
ISO 45001 Certification Cost
Who's Interested in a Party?
How to use Smartsheet for ISO
Smarter Quality Objectives
Local Government QMS
Quality Assurance, Quality Control or QMS
ISO Certification in Sydney
ISO Certification in Melbourne
ISO Certification in Brisbane
SAI Global Consultant Affiliate Program

QUICKLINKS TO ISO INFO

ISO Consultants Australia
ISO Mentoring
ISO 27001 Certification Cost
ISO 9001 Quality Management
ISO 45001 Health & Safety
ISO 14001 Environment
ISO 17025 Testing & Calibration
ISO 27001 Information Security
ISO 42001 AI Management
ISO 22000 HACCP Food Safety

Search

FOLLOW OR GET IN TOUCH

linkedinmail
Smartsheet Platinum Partner

Copyright © 2026 Streamline · Log in

Privacy Policy · Terms of Use · Disclaimer

Call us Enquire