Skip to content

Digital Operational Resilience Act

What is Digital Operational Resilience Act?

An EU regulation (DORA) that establishes requirements for financial entities to strengthen IT security and ensure operational resilience against ICT-related disruptions.

Compliance and Regulatory

Each of these is named in at least one of the same controls as digital operational resilience act. The number is how many controls name both.

What the standards actually require on digital operational resilience act

Requirements naming digital operational resilience act across 6 standards, quoted from the control text.

Greece Law 4624/2019 2024-2025 regulatory pipeline + EU integration. NIS2 TRANSPOSITION (deadline 17 October 2024 + Greek law expected 2024-2025): Directive (EU) 2022/2555 NIS2 transposition into Greek law expanding cybersecurity scope from NIS1 to 18 critical...

GR-DPA-2024-2025-Pipeline-NIS2-DORA-AIAct-DataAct · Greece Law 4624/2019 2024-2025 Pipeline - NIS2 + DORA + AI Act + Data Act + EDPB Coordination

HKMA C-RAF crosswalk to international + sectoral cybersecurity frameworks. (a) NIST CYBERSECURITY FRAMEWORK (CSF) 2.0 - the 6 CSF functions (Govern + Identify + Protect + Detect + Respond + Recover) map directly to C-RAF 7 domains;

HKMA-CRAF-Crosswalk-NIST-CSF-ISO27001-FFIEC-CBEST-TIBER · HKMA C-RAF Crosswalk to NIST CSF, ISO 27001, FFIEC CAT, CBEST, TIBER-EU and Sectoral Frameworks
HKMA SPM1 control

HKMA SPM crosswalk to international + sectoral standards. (a) BASEL III - BCBS Basel III capital (Pillar 1/2/3) + liquidity (LCR + NSFR) + leverage + IRRBB + FRTB + SMA operational risk + IRB + standardised approaches;

HKMA-SPM-Crosswalk-Basel-FATF-FSB-Sectoral · HKMA SPM Crosswalk to Basel III, FATF, FSB Operational Resilience, IOSCO and Sectoral Frameworks

Project + Programme + Third Party + Resilience + Assurance operationalise risk management in specific contexts. (1) Project + Programme Risk Management: systematic application of risk management to projects + programmes per Association for Project Management (...

IRM-Project-Programme-ThirdParty-SupplyChain-Resilience-BCP-Crisis-AssuranceMapping-3LoD · IRM Project + Programme Risk + Third Party + Supply Chain Risk + Operational Resilience + BCP + Crisis Management + Assurance Mapping + Three Lines of Defence

The FSA Cybersecurity Maturity Self-Assessment Tool (Saiba Sekyuritii Jiko Hyouka Tool サイバーセキュリティ自己評価ツール) is the centrepiece annual assessment requirement for Japanese financial institutions + first introduced 2017 + significantly enhanced 2022 + sector-specif...

JP-FSA-CYB-Cybersecurity-Maturity-Self-Assessment-Tool-Annual-Submission-Risk-Tier-Based-Tier1-Tier2-Tier3 · Japan FSA Cybersecurity Maturity Self-Assessment Tool + Annual Submission + Risk-Tier-Based + Tier 1 Foundational + Tier 2 Enhanced + Tier 3 Advanced + FSA Inspection + Plan-Do-Check-Act + Continuous Improvement + Industry Benchmarking

Lloyds MS11.17 Cyber Risk Quantification and Capital Linkage - cyber risk quantification methodology aligned with PRA Solvency II + Operational Risk Internal Model (where applicable) + standard formula + cyber-specific stressors + scenario analysis (Lloyds Rea...

LLOYDS-MS11-Cyber-Risk-Quantification-Capital-Linkage-Regulatory-Lloyds-Reporting-MS11-17-18-CBEST-FFIEC · Lloyds MS11 Cyber Risk Quantification + Capital + Regulatory + Lloyds Reporting + MS11.17-18

Questions people ask about digital operational resilience act

What is Digital Operational Resilience Act?
An EU regulation (DORA) that establishes requirements for financial entities to strengthen IT security and ensure operational resilience against ICT-related disruptions.
Why is Digital Operational Resilience Act important for compliance?
Digital Operational Resilience Act is a key concept in Compliance and Regulatory. Understanding digital operational resilience act helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Digital Operational Resilience Act?
Digital Operational Resilience Act appears in the requirement text of Greece Law 4624/2019 - Hellenic Data Protection Authority (HDPA) Implementation Act, HKMA Cyber Resilience Assessment Framework (C-RAF), HKMA SPM, IRM Enterprise Risk Management Framework (Institute of Risk Management), Japan FSA Cybersecurity Guidelines for Financial Institutions. Across these standards we have identified 6 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Digital Operational Resilience Act?
Explore our compliance framework pages to see how digital operational resilience act applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Digital Operational Resilience Act applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.