If it so bad there is actually a whistleblower then how do they pass their ISO27001 audits? Bit too friendly with TUV Nord? https://cariad.technology/content/dam/digitalmindofmobility/... EDIT: Just noticed this is an ISO9001 certificate. Though on their job offer site they do ask for "Foundational understanding of security related regulations and standards preferred (e.g. ISO21434, ISO27001, NIST-800)". Unclear if t…
The fact that you have passed audits isn't a guarantee (or even an indication) that you don't have major security vulnerabilities.
Please explain that to my IT department.