Digital Operational Resilience Act

Financial entities and related ICT providers need to comply with the Digital Operational Resilience Act by 17 January 2025. In addition to the regulation, several DORA technical standards (RTS) have been published. In the table on this page you’ll find all the last relevant documents. This table has been last updated in August 2024. In case any new materials are published by the European Supervisory Authorities (ESA’s)  this page accordingly.

The aim of this page is provide for easy access to all relevant resources, happy reading!

NEW

Answer 8 questions to easily determine if an incident needs to be reported to the competent authorities under DORA.

Document title Topic
Main Act
Major incidents
Major incidents
Policy
Register of Information (third parties)
Register of Information (third parties)
ICT Risk Management Framework
Subcontracting
Threat Led Penetration Testing
Cost/losses of major incidents
Oversight harmonisation
Oversight cooperation and information exchange

Want to receive DORA updates?