Skip to content
Cyber Horizon
All frameworks

// Industry

TISAX Automotive Information Security Compliance Software

Trusted Information Security Assessment Exchange for automotive industry.

Framework at a glance

Short name

TISAX

Version

Category

Industry

Controls

35

What TISAX covers

35 controls across 32 domains — every one tracked, owned and evidenced in Cyber Horizon.

Policy

3 controls
  • 1.1.1 Information security policy
  • 3.2.1 Clean desk policy
  • 5.1.1 Cryptography policy

Governance

1 controls
  • 1.1.2 Information security roles

Projects

1 controls
  • 1.1.3 Information security in projects

Risk

1 controls
  • 1.2.1 Risk management

Legal

1 controls
  • 1.3.1 Legal and contractual requirements

Response

1 controls
  • 1.4.1 Security incidents

Inventory

1 controls
  • 2.1.1 Asset inventory

Classification

1 controls
  • 2.1.2 Asset classification

Protection

1 controls
  • 2.2.1 Protection requirements for information

Access Control

1 controls
  • 3.1.1 Physical access control

Monitoring

2 controls
  • 3.1.2 Physical security monitoring
  • 9.1.3 Supplier monitoring

Equipment

1 controls
  • 3.3.1 Equipment protection

Identity Management

1 controls
  • 4.1.1 Access rights management

Privileged Access

1 controls
  • 4.1.2 Privileged access management

Authentication

1 controls
  • 4.1.3 Authentication requirements

Remote Access

1 controls
  • 4.2.1 Remote access control

Key Management

1 controls
  • 5.1.2 Key management

Procedures

1 controls
  • 6.1.1 Operations procedures

Change Management

1 controls
  • 6.1.2 Change management

Malware

1 controls
  • 6.2.1 Malware protection

Vulnerability Management

1 controls
  • 6.2.2 Vulnerability management

Backup

1 controls
  • 6.3.1 Backup and recovery

Logging

1 controls
  • 6.4.1 Logging and monitoring

Controls

1 controls
  • 7.1.1 Network security

Segmentation

1 controls
  • 7.1.2 Network segmentation

Data Transfer

1 controls
  • 7.2.1 Secure information transfer

SDLC

1 controls
  • 8.1.1 Secure development lifecycle

Coding

1 controls
  • 8.1.2 Secure coding

Assessment

1 controls
  • 9.1.1 Supplier assessment

Contracts

1 controls
  • 9.1.2 Supplier agreements

Planning

1 controls
  • 10.1.1 Business continuity management

Recovery

1 controls
  • 10.2.1 Disaster recovery

How Cyber Horizon automates TISAX

Every TISAX control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.

Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.

Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.

Frequently asked questions

What is TISAX Automotive Information Security?

Trusted Information Security Assessment Exchange for automotive industry.

How many controls does TISAX Automotive Information Security have?

TISAX Automotive Information Security has 35 controls in Cyber Horizon's catalogue, organised across 32 domains.

How does Cyber Horizon help with TISAX Automotive Information Security?

Cyber Horizon maps TISAX Automotive Information Security into a shared control library alongside every other framework you run, so evidence collected once counts towards TISAX and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.

See TISAX mapped to your environment

Start with the free 20-question readiness check — no signup — or get a personal walkthrough of TISAX in Cyber Horizon.