Agenda Fit-Gap Workshop VDA ISA (TISAX
Time | Topic | Content |
| 1 h | Management | Governance aspects, legal and contractual obligations, organizational structure, responsibilities. |
| 2 h | Information Security | Incident management, business continuity, change management, asset management |
| 1 h | Project Management | Contract execution, project classification, execution process |
| 3 h | Physical Security | Access control, surveillance, fire protection, intrusion prevention Includes site inspection |
| 2 h | IT Infrastructure | Hardware, software, procurement, operations, security processes |
| 1 h | HR & Personnel | Recruitment, contracts, onboarding, training, offboarding |
| 1 h | Procurement | Subcontractor management vendor agreements. |
| 1 h | Legal & Data Protection | Contracts, regulatory compliance, GDPR, and processing agreements |
Vergleich: TISAX und. ISO/IEC 27001
Dauer
ISO/IEC 27001
TISAX
Wesentliche Einrichtungen
Alle Branchen
Automobilindustrie und deren Lieferketten
Schwerpunkt
Aufbau eines ISMS
Bewertung branchenspezifischer Informationssicherheitsanforderungen
Flexibilität
Sehr flexibel, anpassbar auf alle Organisationen
Standardisierte Module für spezifische Anforderungen
Zertifizierungs-prozess
ISO-Audit durch akkreditierte Stellen
TISAX-Audit durch akkreditierte Prüfer
Risikomanagement
Zentraler Bestandteil
Zentraler Bestandteil, spezifisch auf die Automobilbranche zugeschnitten
Internationalität
Global anerkannt
Primär europäisch, zunehmend internationale Relevanz