On this page you will find information on the following topics:
Manage TISAX certification and other checks reliably and GDPR-compliant with the Timly app
Keeping Track of Certifications and Deadlines With Timly
Compliance and IT security are important topics in the industry. The TISAX certification of the automotive industry is designed to guarantee compliance with important security standards for the protection of sensitive information and company secrets. The standards defined in TISAX, which stands for Trusted Information Security Assessment Exchange, are checked in a multi-stage process at the applying company. The ENX Association, as an association of European automotive companies and suppliers, represents the governance organisation. It formulates the regulations for TISAX certification and licenses special test service providers who carry out a TISAX test in practice. In addition, it reserves the right to monitor the procedures and quality of the implementation.
For the audited companies, TISAX certification brings the advantage that the assessment and exchange mechanism is recognised across manufacturers. For example, those responsible for suppliers and service only have to initiate one testing process and can then work for different customers in the industry.
The required comparability of results necessitates strict compliance with TISAX assessment requirements. For this, it is necessary that all relevant information is stored in a structured way in the audited company and can be easily accessed when needed. Timly provides an enterprise solution that can be used to manage all necessary personnel qualifications as well as detailed information about the IT infrastructure.
The Timly software is therefore an important building block for the effective and successful completion of the audit process, that meets information security requirements. After the completion of the process, Timly also offers the possibility to prove the validity of the TISAX certification on site.
TISAX Certification in Automotive: Questionnaire as a Basis
The content of the TISAX certification was initially based on the well-known ISO IEC 27001 standard, which is one of the most established certifications in information security management. It regulates, for example, precautions to protect against data theft and misuse, encryption and access mechanisms and the ongoing monitoring of the integrity of the company’s own systems.
In addition, the questionnaire is used by the German Association of the Automotive Industry (VDA) as a basis. The Information Security Assessment (ISA) includes basic precautions and procedures for data security, for example patch management and setting up personal access authorisations. It is essential to collect and store the necessary information in a structured manner.
Timly creates the best conditions for this with its holistic approach. The decisive factor is that the software solution makes it possible to manage personnel information (with the training management software function) and inventory data in one system and to link them with each other at the necessary interfaces. In this way, all necessary proof of suitability, personal certifications and safety instructions can be entered into the Timly digital personnel file in a legally secure manner.
In this way, they are not only available at the push of a button when assessments are due. The system’s deadline management also ensures that upcoming examination and renewal dates are pointed out in good time. The HR department and affected employees are automatically notified by e-mail if desired.
Similarly, Timly also maps complex IT infrastructures. All necessary information about licence expiry dates, maintenance and update work as well as important network and security information can be stored in it.
The Timly inventory management software stores the information centrally in a secure and GDPR-compliant cloud storage. The sophisticated and fine-grained authorisation system guarantees data protection for sensitive information. The Timly concept combines the simplest and most intuitive usability possible with the highest possible security. This is essential so that mechanisms are not circumvented out of time constraints and convenience, for example by sticking the infamous sticky note with the complex password to the screen.
Timly offers authorised employees access to required facts and instructions at any time from any end device. With the Timly app, there is even an alternative optimised for smartphones and tablets. This simplicity makes it easier to observe security precautions in everyday working life.
TISAX Certification – Requirements and Procedure
Those responsible for companies that are seeking TISAX certification due to customer requirements or out of their own interest can first work through the VDA’s ISA questionnaire. If the essential protective measures and precautions required in it are fulfilled, there is nothing to stand in the way of the assessment process. This is divided into three major steps and different assessment levels:
The company must be registered with ENX and the assessment process must be applied for. In addition to obtaining the necessary information, this step also includes defining the scope of the audit – which is called the TISAX audit scope. Furthermore, protection goals are determined, for example necessary precautions in handling prototypes. These are based on the possible TISAX labels, which can be described as levels of secrecy or maturity level.
The actual examination first requires a self-assessment based on the ISA requirements catalogue to cover the basic questions. A certified TISAX audit service provider is then selected to carry out the actual audit process in the company. The service provider checks the self-assessment and carries out the usually multi-stage TISAX procedure for the audit.
In the process, interim results can also be presented and subsequent improvements can be checked in follow-up audits on the basis of action plans that have been drawn up. In the case of minor deviations, the auditors may issue a provisional TISAX label. After successful completion, the final TISAX label is awarded, the assessment level of which is based on the previously agreed target. The awarded label is valid for a maximum of three years.
The audit results and the label are made available by the audit service provider on the ENX exchange platform. The responsible persons of the audited company then decide on the sharing level for publication towards partners. Depending on the level selected, all TISAX participants or only explicitly authorised companies can gain insight.
Differences and Similarities: TISAX Certification vs. ISO 27001
The ISO 27001 standard is a standard for the management of information security in companies that has been further developed for decades. In so-called audits, the conformity with processes in companies is checked. Authorised auditing companies award corresponding certifications, which confirm compliance with the prescribed requirements. The certified companies may also actively advertise their conformity to the international standard ISO-27001.
The TISAX, on the other hand, is a rather closed system. The strong specialisation and the need for protection of trade secrets in the domestic automotive sector mean that a certain degree of encapsulation is necessary. The results of the TISAX testing process may ultimately only be used internally and in exchange with other registered companies. However, since suppliers are also often highly specialised, this need not ultimately be a disadvantage.
TISAX Certification: Costs for TISAX Audit, Staff & Co.
For TISAX certification, basic IT security requirements must be met. This may entail adapting and revising workflows. Depending on the size of the company and the TISAX label sought, the costs for the certification process alone can range from low five-figure sums to sums beyond 80,000 GBP.
An information management system designed with Timly helps to store the data required for the audit process in a structured way and to have it ready to hand on the day of the audit.
With the Timly app, managers can enjoy efficient processes and cost savings in TISAX certification
Get a Free Trial of the Timly Software Now
(No credit card required)
Intuitive Management of Your Exam Certificates and Dates
Our inventory software Deadline Planner offers you a wide range of sophisticated functions that make TISAX certification easier. In this way, all processes relating to the audits are digitalised simply and reliably.
Manage All Assets
Whether IT resources, tools, machines, vehicle fleet, furniture or contracts: everything in Timly.
Mobile Available Everywhere
Localise your assets with the integrated barcode scanner for smartphones & tablets.
Easily assign assets to people, projects, rooms, locations or external service providers.
Digital File Management
Digitally store important information, files, documents, audit trails & contacts for your assets.
Save the exact GPS location of your assets with one scan. All GPS data historically verifiable.
Similar Blog Articles:
Explore how to manage it assets inventory effectively, covering best practices, risk management, and enhancing operational efficiency.
Digital transformation for small business is among the most exciting and promising trends today, but studies show that many companies, especially smaller ones, are slow in making key changes or moving forward w...
This article explores how you can optimise and manage IT assets with smart software tools. Find out how to get the most of your IT equipment and increase your ROI, how to improve your maintenance processes and ...