Jubilee Signet

Introduction of the vehicle cyber security management system (V-CSMS) audit

Jun 12, 2024 Audit

An assessment with its finger on the pulse: The V-CSMS audit moves into Phase 2 of development

The growing digitization of vehicle systems, driven by developments such as autonomous driving, connectivity and innovative mobility solutions, has significantly increased the demands on the cybersecurity of electrical and electronic (E/E) systems along the entire automotive supply chain. In this context, the development of a standardized vehicle cyber security (VCS) audit became of great importance for the industry.
At a glance: key facts about the new audit
  • ENX VCS was created in response to the increasing digitization of vehicle systems and the associated cybersecurity risks.
  • ENX Association has developed the ENX VCS audit.
  • ENX VCS is the certification of an ISO/SAE 21434 compliant vehicle cyber security management system (V-CSMS), which also covers the recommendations of ISO/PAS 5112.
  • The demand for certifications and the security landscape in the international automotive industry are driving the need for the ENX VCS audit.

TISAX® certification

The growing demand for certifications in the wake of digitalization means that currently only “ISO/SAE 21434 certifications” protected by individual audit companies can be offered. To change this, ENX Association has successfully demonstrated the feasibility of a standardized vehicle cyber security (VCS) audit and is now starting with the 2nd development phase to make the audits accessible to a larger number of participants. The VCS audit is aimed at automotive supply companies that develop, produce or maintain electric and electronic systems for road vehicles. It offers standardized V-CSMS audits and uses the established ENX Association audit framework. ENX ensures that the mechanism is open, transparent and trustworthy, and that the interests of stakeholders in integrated solutions and synergies with standards such as TISAX are implemented in the best way possible. It should be noted, however, that only organizations which have a valid TISAX label can participate in the 2nd development phase. If you do not yet have a valid TISAX label, you can combine the TISAX assessment with the VCS audit and receive both at the same time.
Participation and audit in phase 2
Would you like to participate as an organization in phase 2 of the development of the VCS audit? Then you can contact us after successful registration at enx.com. Our experts are specially qualified to perform the VCS audit according to the established standards.
Once the audit is complete, you can share your audit results with other participants via the ENX portal to enable a transparent exchange of information and best practices and strengthen cybersecurity in the automotive industry as a whole.