* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Wednesday, December 31, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

    SIE Partners with Bad Robot Games to Produce and Publish the Studio’s First Internally Developed Game – sonyinteractive.com

    SIE Joins Forces with Bad Robot Games to Unveil Their First In-House Developed Title

    My Favorite Reality Show of 2025 Had a Final Twist that Left Me Shook – PureWow

    My Favorite Reality Show of 2025 Had a Final Twist that Left Me Shook – PureWow

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Devices in schools–how much is too much? – Westport Journal

    Are Devices in Schools Enhancing Learning or Creating Distractions?

    Sharge Technology Secures Nearly 100M Yuan in Series A+ Financing, Aims to Ship Over 100K Units of New AI Glasses in One Year | Exclusive Report by Yingke – 36Kr

    Sharge Technology Secures Nearly 100M Yuan in Series A+ to Launch Over 100,000 AI Glasses Within a Year

    New technology trialled on £2m Bedford Lock upgrade – BBC

    Revolutionary Technology Breathes New Life into £2 Million Bedford Lock Upgrade

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

    SIE Partners with Bad Robot Games to Produce and Publish the Studio’s First Internally Developed Game – sonyinteractive.com

    SIE Joins Forces with Bad Robot Games to Unveil Their First In-House Developed Title

    My Favorite Reality Show of 2025 Had a Final Twist that Left Me Shook – PureWow

    My Favorite Reality Show of 2025 Had a Final Twist that Left Me Shook – PureWow

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Devices in schools–how much is too much? – Westport Journal

    Are Devices in Schools Enhancing Learning or Creating Distractions?

    Sharge Technology Secures Nearly 100M Yuan in Series A+ Financing, Aims to Ship Over 100K Units of New AI Glasses in One Year | Exclusive Report by Yingke – 36Kr

    Sharge Technology Secures Nearly 100M Yuan in Series A+ to Launch Over 100,000 AI Glasses Within a Year

    New technology trialled on £2m Bedford Lock upgrade – BBC

    Revolutionary Technology Breathes New Life into £2 Million Bedford Lock Upgrade

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

DORA: Moving into a new era of digital resilience

October 23, 2023
in Technology
DORA: Moving into a new era of digital resilience
Share on FacebookShare on Twitter

The EU’s Digital Operational Resilience Act will come into force in just over a year, the majority of risk management professionals are only at the beginning of their planning journey. Kate Needham-Bennett of Fusion Risk Management explains how to get things moving

By

Kate Needham-Bennett

Published: 19 Oct 2023

Operational resilience is the discipline that is taking organisations beyond an internally-focused business continuity or information technology disaster recovery (ITDR) programme to look at the wider impact of disruption to services through an external-facing lens. Properly defined, operational resilience is the “ability of firms, [financial] market infrastructures, and the [financial] sector as a whole to prevent, adapt and respond to, recover and learn from operational disruption.” 

Regulations such as the Digital Operational Resilience Act (DORA) have taken the complementary step of regulating operational resilience across not just financial services institutions in the European Union (EU) but associated information and communication technology (ICT) and third-party providers as well. With the globalisation of the financial services industry though, external organisations that are providing financial services within the EU or as a critical third-party service provider are forced to reconsider their resiliency efforts.

Whether we look at DORA or other recent resilience regulations, there are common requirements between them; to be efficient, this will necessitate a unified or holistic interdepartmental approach. Whether a regulated organisation or not though, these methods and practices are being seen as examples of operational excellence, which could benefit all.  Being able to see the connections across your operating model and understand where there are vulnerabilities helps to ensure the continuity of the service delivery or money-making sides of your enterprise.

A framework for achieving digital resiliency

DORA officially entered into force in January 2023 and will apply from January 2025, following rounds of public consultation and the introduction of regulatory technical standards (RTSs) and implementing technical standards (ITSs) from January 2024. With the implementation period well underway, the clock is ticking for organisations to prioritise compliance efforts in order to avoid regulatory and financial consequences.

DORA was developed to strengthen compliance efforts and amalgamate a plethora of existing regulations from across the EU into one cohesive act. As such, some of the requirements are already being adhered to as part of regular compliance programmes, e.g. the EBA (European Banking Authority) Guidelines on Outsourcing Arrangements or on ICT and Security Risk Management. 

However, financial supervisory authorities will now be empowered to monitor and audit financial entities more closely, introducing a uniform incident reporting mechanism with the goal of ensuring financial stability, protecting consumers, and increasing knowledge sharing across EU member states.

Approaching compliance with DORA

Many organisations struggle with where to start when it comes to addressing transformative resiliency efforts. The best first step to take is to establish a holistic understanding of your organisation’s resilience posture. Assessing your organisation’s functions, interdependencies, and risks will provide you with a baseline, from which you can conduct a gap analysis against the regulatory requirements to see where you are already compliant due to existing regional legislation or where further action is required. 

In all aspects though, DORA and the European supervisory authorities (ESAs), during the public consultation sessions on the draft technical standards (that were released in June 2023), have explicitly provided for a proportional approach. Organisations should consider their size and risk profile as well as the nature, scale, and complexity of their services and then plan accordingly before diving in. Whilst DORA is a lot more prescriptive than previous regulations, aspects of it may already be being addressed by resilience, risk, cyber, or third-party teams; this is simply the opportunity to break down those siloes and bring all of their efforts together.

Five action areas to start

Categorise and map critical or important functions (CIFs): Establishing business process maps and interdependencies is the first step to understanding how your organisation works. You must map which departments, process owners, and third parties contribute to the continuous delivery of critical functions to understand how they may be threatened.
Identify gaps in your ICT risk management policies and procedures: Understand where there are any gaps in your network security, data encryption, access controls, security training, maintenance and load testing, etc. and begin to plan out measures to address them. In the meantime, ensure that there are adequate preventative procedures and control measures in place to minimise any impact due to non-compliance.
Inspect your incident reporting framework: Most organisations will already have measures in place to prevent (where possible) and then manage ICT incidents as well as have logs of events; however, many will need to look at building out their analysis mechanisms to ensure that lessons are learnt and remedied as well as look at how they are using the data being monitored across disciplines to develop early warning systems.
Begin collating your register of all ICT-related outsourcing: Your organisation will likely already have a material outsourcing policy in place and conduct additional due diligence on tier one vendors. However, you may need to adapt this policy to address the use of ICT services that support CIFs as well as develop a methodology for determining which ICT services come in scope and should be included in the audit plan.
Examine your resilience testing programme: It will no longer be enough to simply conduct an annual business continuity plan walkthrough, CMT desktop exercise, and ITDR failover. Operational resilience policies already require organisations to take a more stringent, evidence-based approach across a wide range of severe but plausible scenarios for their important business services. DORA expands on this, requiring organisations above a certain threshold to conduct “advanced” threat-led penetration testing (TLPT) every three years, in line with the TIBER testing being already conducted by some organisations.

Challenges for implementation

One of the largest compliance obstacles for DORA is information or departmental silos within an organisation. Adherence to the act will take a collaborative approach between cyber, security, resilience, third-party, and risk teams to all work off of the same data sources and share results and lessons learnt from their work with one another.

It’s easy to get caught up in the whirlwind of departmental demands, but it’s important not to lose sight of developments to DORA, with the draft technical standards due to be submitted to the Commission by 17 January 2024 for adoption and a second batch of technical standards due to be submitted to the commission by 17 July 2024. This second set should help to clarify some of the requirements around threat-led penetration testing, subcontracting of CIFs, and the content and timeline of incident reporting.

Those boards and C-suites that view compliance with DORA as a strategic investment, by allocating it the budget and resources that it requires now, stand the best chance of not only meeting compliance requirements but of having an organisation with an agile resilience posture that can adapt at pace to the continually shifting risk landscape, setting them up for a brighter and more secure reputational and financial future.

Kate Needham-Bennett is senior director of resilience innovation at Fusion Risk Management.

Read more on Regulatory compliance and standard requirements


NIS2: Why organisations need a unified cybersecurity standard


Google’s DORA DevOps report warns against metrics misuse

BethPariseau

By: Beth Pariseau


The trust deficit in CNI: How to address a growing concern


Retail companies gain DORA metrics ROI from specialist tools

BethPariseau

By: Beth Pariseau

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/opinion/DORA-Moving-into-a-new-era-of-digital-resilience

Tags: digitalMovingtechnology
Previous Post

Dolphins’ loss to Eagles exposes what could be a critical flaw

Next Post

Scality gets a jump with VMware Cloud Director integration

Russia’s Year in Review: How the Kremlin Wants the World to See 2025 – The National Interest

Russia’s Vision for 2025: How the Kremlin Aims to Shape Global Perception

December 31, 2025
Global major economic and financial events in 2025 – news.cgtn.com

Top Economic and Financial Events Set to Transform the Global Landscape in 2025

December 31, 2025
New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

December 31, 2025
New USPS rule could put ballots, health care appeals at risk – KFYR-TV

New USPS Rule May Jeopardize Ballots and Health Care Appeals

December 31, 2025
Alleged Jan. 6 pipe bomber said he wasn’t targeting Congress’ certification of Biden’s victory: DOJ – ABC News

Alleged Jan. 6 Pipe Bomber Insists He Didn’t Target Congress During Biden Certification

December 30, 2025
Carrying Capacity Alert Index Gauges African Grassland Sustainability – Bioengineer.org

Revealing the Real Sustainability of African Grasslands with a Groundbreaking New Alert Index

December 30, 2025
New issue: Don’t count the calories – BBC Science Focus Magazine

How Counting Calories Could Be Sabotaging Your Progress

December 30, 2025
Science history: Richard Feynman gives a fun little lecture — and dreams up an entirely new field of physics — Dec. 29, 1959 – Live Science

How Richard Feynman’s Fun Lecture Ignited a Revolutionary New Field of Physics

December 30, 2025
Lifestyle expert shares cozy at home New Year’s Eve ideas to ring in 2026 – Fox News

Cozy and Creative New Year’s Eve Ideas to Ring in 2026 at Home

December 30, 2025
The Technological Rivalry Between The US And China – Seeking Alpha

The Fierce Tech Battle Shaping the Future Between the US and China

December 30, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (996)
  • Economy (1,015)
  • Entertainment (21,892)
  • General (19,046)
  • Health (10,055)
  • Lifestyle (1,027)
  • News (22,149)
  • People (1,021)
  • Politics (1,029)
  • Science (16,230)
  • Sports (21,515)
  • Technology (15,997)
  • World (1,004)

Recent News

Russia’s Year in Review: How the Kremlin Wants the World to See 2025 – The National Interest

Russia’s Vision for 2025: How the Kremlin Aims to Shape Global Perception

December 31, 2025
Global major economic and financial events in 2025 – news.cgtn.com

Top Economic and Financial Events Set to Transform the Global Landscape in 2025

December 31, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version