▸ Compliance / DORA

Digital Operational Resilience Act DORA

5 pillars. ICT risk management for financial services. Effective 17 Jan 2025.

What you need to know.

  • 5 pillars: ICT risk management, incident reporting, digital operational resilience testing, third-party risk, information sharing
  • Applies to: banks, insurance, investment firms, crypto-asset service providers
  • Critical third-party providers (CTPPs) designated by ESAs
  • Annual ICT risk assessment required
  • Major ICT incident reporting within strict timelines
SOV3200 OK
Hive34/34
Council13/13
BFT9/13
MCPs218
EU AI ActT-37