Skip to main content

Implement VdA ISA in a Structured Way

Document the German Automotive Industry Association's information security assessment catalog in a structured way and prepare for the TISAX assessment. With the ready-to-use VdA ISA catalog (optional and paid) in preeco | information security, the basis for a TISAX assessment (AL1–AL3) is immediately available.

Implement VdA ISA with preeco

FAQ

Frequently asked questions

Yes. With the ready-to-use VdA ISA catalog (optional and paid), preeco | information security guides you through the requirements of the German Automotive Industry Association's assessment catalog — the basis of the TISAX assessment (AL1 to AL3). You document each requirement traceably, prove measures and evidence during ongoing operations, and keep degree of fulfillment and open items in view. preeco does not issue a TISAX label — labels are granted via the ENX portal after an accredited assessment; the software prepares you for it.

Not formally required, but TISAX builds on ISO 27001/27002. preeco | information security maps both in one system: ISO/IEC 27001 requirements are steered via ready-to-use requirement catalogs with Statement of Applicability, and the VdA ISA catalog via the audit catalogs. This avoids duplicate work and lets you reuse evidence across both frameworks.

Yes. preeco | information security supports automotive suppliers in implementing TISAX: the ready-to-use VdA ISA catalog (available as an optional add-on) maps the assessment basis for a TISAX assessment at levels AL1 to AL3. Suppliers document each requirement traceably, prove security measures and evidence during ongoing operations, and keep degree of fulfillment and open items graphically in view. Results can be exported as PDF or DOCX and fed directly into the assessment; the TISAX label itself is granted via the ENX portal after an accredited assessment.

With a continuously maintained information security management system: preeco | information security keeps the VdA ISA evidence permanently up to date instead of compiling it shortly before the assessment. Security measures are reviewed continuously and documented audit-proof, all evidence arises during ongoing operations and is available at any time. Exported results serve as the basis for the TISAX assessment; the resulting label is shared with business partners in the automotive industry via the ENX portal.

VdA ISA with preeco

Discover how preeco | information security supports you in implementation.