April 27, 2023
The latest Runecast 6.5.4 automates compliance checks against the TISAX standard, helping organisations from the automotive sector to ensure a high level of information security across their supply chain while minimising the time, resources, and risk involved in the compliance process.
The Trusted Information Security Assessment Exchange (TISAX), is a security standard developed by the German Association of the Automotive Industry (Verband der Automobilindustrie, or VDA) to secure the German automotive industry. A TISAX certification is required for all organisations that do business with most major players in the German automotive industry.
TISAX was developed in response to the increasing importance of information security in the automotive industry, particularly with the rise of autonomous vehicles and data uploads, from vehicles, to automotive companies. It is based on the international standard for information security management, ISO/IEC 27001 and despite some natural overlaps, TISAX is specifically tailored to the automotive industry's unique requirements and is designed to provide a standardised and recognised framework for assessing the information security of organisations and their suppliers.
One of the top threats to any IT system is ransomware, but in the automotive industry cyber attacks against interconnected vehicle systems could be fatal. These vehicle systems are vulnerable to attacks, expanding potential attack surfaces to an even larger and hugely mobile area.
Scanning against the TISAX security standard provides several advantages and benefits, including:
The TISAX standard can now be assessed in the Security & Compliance section of the Runecast platform in the left hand menu, along with other standards such as ISO 27001 (the standard TISAX is based on), DISA STIG, GDPR, HIPAA, NIST, PCI DSS and more.
Clicking on the TISAX icon will take users to a page where they can see the status of their infrastructure, assessed against the standard. The columns can be filtered and ordered as needed. For example, sorting the Result column will show areas that have passed/failed the assessment and filtering the Severity column will show only those issues with highest severity, or lowest, as selected by the user. This enables administrators to prioritise issues and get to work remediating immediately.
Runecast provides the capability to filter and report over any chosen period of time, enabling automotive organisations to prove TISAX compliance throughout a given period and ensuring organisations can verify audit readiness.
It’s this level of usability that gives Runecast the fastest time to value on the market, not just for TISAX, but for any of the other standards which we assess for. An additional feature is that users can build custom profiles within our platform, enabling them to monitor key information as decided by the specific needs and setup of their organisation.
At Runecast, we're committed to helping our customers maintain trust with their partners and customers by providing them with the highest level of security. With TISAX compliance scanning, we're proud to offer an easier way to achieve compliance with the recognized framework for information security management in the automotive industry.
Read our case studies to see where Runecast has saved organisations 90% of the time they previously spent troubleshooting.