Disclaimer
Last updated 1 September 2026
ISAREADY provides independent assessment-readiness resources and practical information security tools. ISAREADY is not affiliated with, endorsed by, or acting on behalf of ENX Association, VDA, ISO or any TISAX audit provider. Use of ISAREADY resources does not guarantee a TISAX assessment result, TISAX label, ISO certification or regulatory compliance.
Independence
ISAREADY is an independent publisher of readiness resources. We are not an ENX Association product, not a VDA product, not an ISO product, and not a TISAX audit provider. We hold no accreditation, approval or endorsement from any of those bodies, and we do not act on behalf of any of them.
Where we refer to TISAX, ISA, ENX Association, the VDA or ISO, we do so descriptively. Those names and marks belong to their respective owners.
No guaranteed outcome
Use of ISAREADY resources does not guarantee a TISAX assessment result, a TISAX label, an ISO certification or regulatory compliance. Anyone offering such a guarantee — for any framework — is describing something they cannot control.
What structured preparation changes is whether your organisation can demonstrate what it does. That is a real and substantial difference, and it is the honest claim.
The self-assessment
This assessment provides an indicative ISAREADY readiness view. It is not an official TISAX assessment and does not predict or guarantee an assessment result.
The ISAREADY Readiness Indicator is our own construct. It is not an official maturity level, it is not comparable to any published assessment scale, and it is calculated entirely from answers you provide about your own organisation. Nobody verifies those answers.
Original content only
Our assessment questions, checklist and toolkit materials are original ISAREADY content. We do not reproduce, paraphrase or renumber any official assessment questionnaire, including the ISA catalogue. Where you need the official requirements, obtain them from the publishing body.
How we label our statements
Every substantive statement in our guidance falls into one of three categories:
- Official framework information — Publicly documented by the body that owns the framework. Always verify against the current official source before acting.
- Industry good practice — Widely applied in automotive information security programmes, but not itself a formal requirement.
- ISAREADY recommendation — Our own methodology. Practical guidance from structuring readiness programmes — not an official requirement.
Accuracy and currency
Frameworks change. We date our content and update it, but we cannot guarantee that every page reflects the most recent official position at the moment you read it. Always verify against the current official source before acting.
If you find something inaccurate, tell us. We would rather be corrected than cited incorrectly.
Not professional advice
Nothing here constitutes legal, regulatory or professional advice. Your organisation’s obligations depend on its specific circumstances, contracts and jurisdiction.