// Industry
TISAX Automotive Information Security Compliance Software
Trusted Information Security Assessment Exchange for automotive industry.
Framework at a glance
Short name
TISAX
Version
—
Category
Industry
Controls
35
What TISAX covers
35 controls across 32 domains — every one tracked, owned and evidenced in Cyber Horizon.
Policy
3 controls- 1.1.1 Information security policy
- 3.2.1 Clean desk policy
- 5.1.1 Cryptography policy
Governance
1 controls- 1.1.2 Information security roles
Projects
1 controls- 1.1.3 Information security in projects
Risk
1 controls- 1.2.1 Risk management
Legal
1 controls- 1.3.1 Legal and contractual requirements
Response
1 controls- 1.4.1 Security incidents
Inventory
1 controls- 2.1.1 Asset inventory
Classification
1 controls- 2.1.2 Asset classification
Protection
1 controls- 2.2.1 Protection requirements for information
Access Control
1 controls- 3.1.1 Physical access control
Monitoring
2 controls- 3.1.2 Physical security monitoring
- 9.1.3 Supplier monitoring
Equipment
1 controls- 3.3.1 Equipment protection
Identity Management
1 controls- 4.1.1 Access rights management
Privileged Access
1 controls- 4.1.2 Privileged access management
Authentication
1 controls- 4.1.3 Authentication requirements
Remote Access
1 controls- 4.2.1 Remote access control
Key Management
1 controls- 5.1.2 Key management
Procedures
1 controls- 6.1.1 Operations procedures
Change Management
1 controls- 6.1.2 Change management
Malware
1 controls- 6.2.1 Malware protection
Vulnerability Management
1 controls- 6.2.2 Vulnerability management
Backup
1 controls- 6.3.1 Backup and recovery
Logging
1 controls- 6.4.1 Logging and monitoring
Controls
1 controls- 7.1.1 Network security
Segmentation
1 controls- 7.1.2 Network segmentation
Data Transfer
1 controls- 7.2.1 Secure information transfer
SDLC
1 controls- 8.1.1 Secure development lifecycle
Coding
1 controls- 8.1.2 Secure coding
Assessment
1 controls- 9.1.1 Supplier assessment
Contracts
1 controls- 9.1.2 Supplier agreements
Planning
1 controls- 10.1.1 Business continuity management
Recovery
1 controls- 10.2.1 Disaster recovery
How Cyber Horizon automates TISAX
Every TISAX control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.
Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.
Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.
Frequently asked questions
What is TISAX Automotive Information Security?
Trusted Information Security Assessment Exchange for automotive industry.
How many controls does TISAX Automotive Information Security have?
TISAX Automotive Information Security has 35 controls in Cyber Horizon's catalogue, organised across 32 domains.
How does Cyber Horizon help with TISAX Automotive Information Security?
Cyber Horizon maps TISAX Automotive Information Security into a shared control library alongside every other framework you run, so evidence collected once counts towards TISAX and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.
See TISAX mapped to your environment
Start with the free 20-question readiness check — no signup — or get a personal walkthrough of TISAX in Cyber Horizon.