Is a TISAX certification mandatory?

TISAX is not a legal requirement – but often a prerequisite.
Many companies initially ask themselves whether TISAX certification is necessary for them at all. In practice, automotive manufacturers and major suppliers increasingly require a TISAX label from their partners within the supply chain.
- Development and engineering service providers
- IT and cloud service providers
- Logistics and transportation companies
- Testing and inspection service providers
- Companies working with prototypes or development data

Is TISAX necessary for your company?
Whether and to what extent TISAX is required depends in particular on:
- what data is processed
- what role the company plays in the supply chain
- what requirements the respective customer defines
InShield Consulting supports you in quickly determining whether your company requires TISAX and which assessment objectives are appropriate.
In addition, TISAX certification helps many companies meet the legal requirements of the NIS2 Directive. Companies with a TISAX-compliant security management system therefore have a very strong foundation for NIS2. Additional requirements primarily include mandatory reporting obligations for cyber incidents to the relevant authorities.