EU DORA

The Digital Operational Resilience Act (DORA for short) is intended to strengthen the IT security frameworks of financial entities and ensure that they remain resilient in the face of cybersecurity threats and in the event of severe operational disruption.

Rule Overview

Jurisdiction: European Union

Regulator: ESMA

Topic: Resilience

Overview
Notable
Latest News
Further Reading

DORA rules cover:

  • ICT risk management
  • ICT third-party risk management
  • Digital operational resilience testing
  • ICT-related incidents
  • Information sharing on cyber threats
  • Oversight of critical third-party providers

DORA will apply to all relevant financial entities and third parties on 17 January 2025.

Notable
DORA: More than meets the eye…

DORA: More than meets the eye…

A look at how DORA will bring change in practical terms, including reach and extraterritoriality.

DORA implementation firmly on track according to EU regulators

DORA implementation firmly on track according to EU regulators

Remarks by Gerry Cross of the Central Bank of Ireland also highlight challenges and provide useful details.

Your DORA questions answered – Scope

Your DORA questions answered – Scope

The first of a series of six articles covering a practical session organised by Ashurst focuses on the scope of DORA.

Regulation

DORA: More than meets the eye…

ESMA

DORA implementation firmly on track according to EU regulators

Technology

Your DORA questions answered – Scope

Latest News More on DORA 

Further Reading