Here is the honest situation. TISAX is how the automotive industry shares assurance of information security. It is assessed against the VDA ISA catalogue, across information security, and where in scope, prototype protection and data protection. The work is real: an ISMS, risk management, asset classification, access control, secure operations, supplier management and the specialised objectives your scope includes. A supplier with good security but no VDA ISA self-assessment and no evidence behind it is exactly where organizations fall short.
This Kit removes the guesswork. It is the VDA ISA criteria written as adopt-ready controls you personalize in a weekend, with the evidence the assessor examines.
What you get, the moment you buy
Grounded in the VDA ISA catalogue behind TISAX, with the ISMS, risk management, asset and access management, operations, supplier security, incident and continuity, prototype protection and data protection called out. Editable Word and Excel files.
What one control looks like
This is defining the assessment scope, where TISAX begins. All 18 are built to this depth.
Why this is not another template pack
- The evidence is the point. A maturity rating you cannot evidence will not survive the audit. This tells you what the assessor examines and where organizations fall short, for every criterion.
- ISMS and specialised objectives built in. The ISMS, risk management and the prototype and data protection objectives are written into the controls, the substance the VDA ISA requires.
- Built on a mapped compliance corpus, not one person's opinion, from a graph of thousands of controls across standards.
- It compounds. TISAX sits on your ISO 27001-style ISMS, so this work feeds your wider security certification and supplier assurance.
Who buys this
Automotive suppliers and service providers and their information security and quality leads. Whether it is a first TISAX assessment or a re-assessment, you save weeks and walk in with the ISMS and your scope objectives structured.
Common questions
Is it really editable? Yes. Word and Excel files you own and adapt. No portal, no subscription.
Is this an official TISAX or VDA tool? No. It is an independent implementation toolkit grounded in the published VDA ISA structure, to get your controls and evidence in order fast before your assessment.
Does it cover prototype and data protection? Yes. The prototype protection and data protection assessment objectives are built as controls for when they are in your scope.
Does it help me self-assess? Yes. The Gap and Readiness assessment scores you against the criteria and ranks the fixes.
What if it is not for me? A 30-day money-back guarantee.
Instant digital download · 30-day money-back guarantee · The Art of Service Pty Ltd, GPO Box 2673, Brisbane QLD 4001 · support@theartofservice.com