Get your individual offer!

Or Schedule a Meeting

Or call us now:

(089) 8967 551 000
userlane
Mateco
Demodesk
My Poster
Fressnapf-1
Kusmi Tea

Christoph Herold, Chief Development Officer, CBTL

How we support CBTL:

“The support provided by DataGuard as a competent partner and external Information Security Officer before and during our TISAX® assessment was extremely helpful, especially in relation to the requirements of TISAX® Assessment Level 3.”

Download Story
Christoph_Herold_CBTL

Christoph Herold, CBTL

Before DataGuard

  • Information Security Management System (ISMS) not ready for TISAX® Assessment
  • Lack of clarity on how to approach the TISAX® Assessment
  • Missing optimised processes according to TISAX® requirements

With DataGuard

  • TISAX® preparations integrated into ISMS
  • Fully supported to prepare for the TISAX® Assessment
  • Established optimised, documented processes for the TISAX® Assessment that can easily be reproduced

Increasing customer demands and the pressure to acquire certifications requires a proactive approach   

“Over the course of the last few years, we have developed from an online learning generalist into a B2B provider and online learning specialist for major corporations”, explains Christoph Herold, Chief Development Officer at CBTL. Their customer base includes a growing number of companies from the automotive industry. “The requirements with regard to data privacy and information security recently increased massively with our automotive customers, similarly to our industrial customers from other industries. 

TISAX®, along with GDPR, has now become a basic requirement for the organisation’s long-term success 

According to Herold, the reason behind this is the increased awareness of the GDPR, which has been in effect since 2018. On top of this, customers from the automotive industry additionally require TISAX® (Trusted Information Security Assessment Exchange) labels, an industry standard that came into force shortly before this. “In order to fulfil the high TISAX® demands and successfully pass a corresponding assessment, we implemented a comprehensive information security management system (ISMS) with the help of DataGuard.” 

Sustainable competitive advantages powered by data privacy and information security

What was the first step? “When customers first started asking us about TISAX®, we decided to arrange an assessment. It was clear to us that proven data privacy compliance and strong information security would serve as a real competitive advantage for our organisation.”  At this point, CBTL already benefitted from an external data protection officer (DPO) provided by DataGuard, resulting in smooth processes and no data security incidents whatsoever. 

Complex standards that required interpretation and creating optimised processes represented a challenge  

“What we were missing in the context of the TISAX® assessment were processes specifically optimised, documented, and replicable any time in line with the TISAX® information security requirements,” says Herold. For example, in the form of concepts for disaster recovery and business continuity. In addition, we did not have a lot of experience and routine within the organisation in terms of the assessment itself.” 

Moreover, many of the information security standards, and thus also the TISAX ® exchange programme, are open to interpretation. Without many years of expertise and experience, preparing for an information security assessment can quickly turn into a complex and lengthy undertaking. 

A quicker path to success with scalable, external, and needs-based support 

Who to turn to? The answer followed a remark that Herold made to their external DPO. “Wouldn’t it be convenient, I thought out loud, if there were someone who could support us with information security the way DataGuard supports us with data privacy? 

"InfoSec-as-a-Service" as the optimal solution 

“In no time”, continues Herold, “I received the reply that DataGuard was in the process of developing an InfoSec-as-a-Service' platform for which CBTL could be a suitable pilot customer. We were intrigued and immediately seized the opportunity. After all, we have had a positive partnership for many years.” Aside from the information security platform, DataGuard won CBTL over with their strategic advice from a dedicated contact who engaged with them at eye level. The organisation’s many years of experience and best practices enabled CBTL to prepare for their scheduled TISAX® assessment quickly and effectively.  

Step-by-step towards the TISAX® assessment  

“In terms of important information security requirements, CBTL was already in a great starting position. Together, we evaluated our existing processes in a kick-off workshop, identified areas that required optimisation, and created initial prioritised recommendations for action”, says Christian Taube, Team Lead Information Security at DataGuard. 

The next step focused on implementing TISAX®-optimised and documented processes that could be reproduced anytime. After an internal review and final preparations, the time had come: On March 8th, 2021, CBTL completed the assessment in accordance with Assessment Level 3. TISAX® participants can view the result of this assessment via the ENX Association (https://enx.com/en-us/). 

DataGuard is about to go live with its new InfoSec-as-a-Service' platform. We couldn’t have expected better results – for both partners. 

Are you also looking to successfully prepare your organisation for an information security assessment in accordance with ISO 27001, TISAX®, or BSI standards? We would be happy to support you and look forward to discussing your needs in an informal initial consultation. 

 TISAX® is a registered trademark of the ENX Association. 

More Customer Success Stories

Don't just take our word for it

“E-commerce is all about people. We do more than just store personal data: we monetize it. This makes it critical for us to stay on the safe side of data protection law. DataGuard helps us do exactly...

brands4friends Read More

“With our digital approach combining online appointments with a healthcare app, we needed a partner that really understands our technical needs. With DataGuard, we have found a partner that speaks...

Avi Medical Read More

“Trying to find the right solution was a complete minefield. There was no understanding or empathy. We are dealing with sensitive data and needed extra help. Nobody took the time to really understand...

Raion Read More

“DataGuard's team of privacy experts is what makes the difference. They don't just tell us "do it like this", they also explain why it should be done in a specific way – which helps broaden my team's...

Demodesk Read More

"The requirements with regard to data privacy and information security recently increased massively with our automotive customers, similarly to our industrial customers from other industries."

CBTL Read More

"With DataGuard, there’s a certain amount of hours included in our package. It covers the amount of questions that I have and gives me peace of mind that I won’t get a huge invoice at the end of the...

Alasco Read More

"As a result of flexibility for recording permissions introduced by DataGuard, UNICEF UK have seen a significant increase in the number of supporters giving consent to marketing depending on channel."

Unicef Read More

"Strong data protection practices are a great argument in favour of a company. People really care about this. And if customers care about it, then businesses need to care about it, too. With the help...

RightNow Read More

“We chose a professional solution that covers a spectrum which an individual internal data protection officer cannot provide – neither in terms of expertise nor in terms of time."

COMBERA Read More

“We were introduced to DataGuard and they were able to provide us with the perfect solution at the time we needed it. DataGuard gives us peace of mind and helps us sleep well at night. If you want to...

NiceLabel Read More

“Previously, all data privacy queries ended up on my desk. Now, the platform is the linchpin. Colleagues can find all their necessary to-dos, templates, documentation, and training courses easily and...

Phiture Read More

“DataGuard allows us to automate responses which saves time and money. And if we ever have a question, they have a team of experts standing by to help. It is like having a pain reliever."

sevDesk Read More

“As a non-profit, we often work with so much personal data – names, email addresses, phone numbers, and more. We have to be on the safe side when it comes to privacy.”

The Futures Project Read More

Use our web-based platform wasdeveloped to be used by anyone, even privacy novices. Work on compliance at your own pace, with the support of our experts always just a click away.

Get a quote