Business Wire

ISACA Provides Guidance Around EU’s Proposed Digital Operational Resilience Act

14.10.2021 17:19:00 EEST | Business Wire | Press release

Share

Reforms following the 2008 financial crisis helped strengthen the resilience of the financial sector, but did not fully address digital operational resilience. The European Union’s recently released Digital Operational Resilience Act (DORA) draft is designed to provide digital operational resilience rules for EU financial institutions, and ISACA provides guidance on this proposal in its new white paper, Digital Operational Resilience in the EU Financial Sector: A Risk-Based Approach .

When finalized, DORA will enact rules for financial services system operators like investment firms, credit institutions, trading venues and electronic money institutions to ensure these systems’ stability and resilience to cyber incidents. Digital Operational Resilience in the EU Financial Sector outlines the objectives and legal basis for DORA, as well as its information and communication technology (ICT) requirements around risk management, information and cybersecurity, incident reporting, testing, and oversight of third-party service providers, some of which include:

  • Set up and maintain resilient ICT systems and tools that minimize the impact of ICT risk.
  • Have an ICT risk-management framework that includes strategies, policies, procedures, ICT protocols and tools necessary to effectively protect all relevant physical components and infrastructures from risk, such as damage and unauthorized access or usage.
  • Test the ICT business continuity policy and the ICT disaster recovery plan at least yearly, and after substantive changes to the ICT systems.
  • Include relevant provisions on accessibility, availability, integrity, security and protection of personal data, and guarantees for access, recover and return in the case of failures of the ICT third-party service providers in contracts that govern the relationship with third-party providers.

“The requirements laid out in DORA to identify all sources of ICT risk on a continuous basis and mandate an annual review of ICT risk management frameworks and review after a major incident, audit or testing are a step in the right direction,” says Chris Dimitriadis, ISACA chief global strategy officer. “However, to further strengthen the act, ISACA encourages provisions ensuring that ICT risk management plans go beyond being a compliance exercise by embedding governance responsibility within the management body, as well as requiring continuous training and ICT awareness of senior management and staff and independent testing performed by testers who are certified.”

During this period in which the DORA regulation is under consideration in the European Parliament and Council of the EU, ISACA’s EU Task Force is engaging with policy makers and sharing feedback. The final version of the regulation is expected in an estimated 18-24 months.

“ISACA is recognized among policy makers as an independent source of expertise on cybersecurity issues. The variety of backgrounds and experience of our members, reflected in the EU Task Force, have been welcomed by policy makers who have valued our contributions to the debate,” says Emily Bastedo, ISACA director for global government relations and public affairs.

To download a complimentary copy of Digital Operational Resilience in the EU Financial Sector, visit https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004L1sxEAC. Additional publications that may be helpful for financial entities as they prepare for DORA include ISACA’s Risk IT Framework, 2nd Edition; Risk IT Practitioner Guide, 2nd Edition ; and IT Risk Fundamentals Study Guide. Other IT risk-related resources can be found at www.isaca.org/resources/it-risk.

About ISACA

For more than 50 years, ISACA® (www.isaca.org) has advanced the best talent, expertise and learning in technology. ISACA equips individuals with knowledge, credentials, education and community to progress their careers and transform their organizations, and enables enterprises to train and build quality teams. ISACA is a global professional association and learning organization that leverages the expertise of its more than 150,000 members who work in information security, governance, assurance, risk and privacy to drive innovation through technology. It has a presence in 188 countries, including more than 220 chapters worldwide. In 2020, ISACA launched One In Tech, a philanthropic foundation that supports IT education and career pathways for under-resourced, under-represented populations.

Twitter: www.twitter.com/ISACANews
LinkedIn: www.linkedin.com/company/isaca
Facebook: www.facebook.com/ISACAGlobal
Instagram: www.instagram.com/isacanews

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Emily Van Camp, evcamp@isaca.org, +1.847.385.7223
Kristen Kessinger, communications@isaca.org, +1.847.660.5512

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

The AI Summit London Unveils 10th Anniversary Speaker Line-Up Featuring Global Leaders in Enterprise AI7.5.2026 11:00:00 EEST | Press release

The AI Summit London today unveiled its keynote speaker line-up for the event’s 10th anniversary edition, bringing together senior leaders, technologists and policymakers from across the globe. The 2026 programme will explore the transformative power of artificial intelligence across sectors including government, enterprise, healthcare, finance and AI infrastructure. Speakers from NVIDIA, Amazon Web Services, Virgin Atlantic, AstraZeneca, the Tony Blair Institute for Global Change and JPMorgan Chase will explore AI deployment, governance, infrastructure and customer transformation across major industries. Further, Jim Carter, Director General Commercial and Industry at the Ministry of Defence, Ollie Ilott, Interim Director General, Emerging Technology and AI, UK Government, and Sasha Rubel, Head of AI/Generative AI Policy, EMEA, Amazon Web Services will lead the “AI Sovereignty – Possibility or Pipe Dream for Europe?” panel, debating whether Europe can realistically compete in the glob

MOVIVA ® launch spotlight at ESGE Days 20267.5.2026 10:58:00 EEST | Press release

During its 175th anniversary year, Erbe Elektromedizin GmbH highlights its continued commitment to healthcare innovation with the launch of MOVIVA®, a minimally invasive solution for gastric mucosal ablation (GMA) in endoscopic obesity therapy. MOVIVA® will be the central focus of Erbe’s activities at ESGE Days in Milan, 14–16 May 2026. Physicians can explore the technology in the hands-on area and attend a dedicated symposium. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260507842222/en/ How GMA with MOVIVA® works “Obesity continues to rise worldwide, and many patients still face a gap between lifestyle interventions, pharmacotherapy, and bariatric surgery. Endoscopic approaches are emerging as additional treatment options. With MOVIVA®, we aim to support physicians in bringing this innovative treatment option into clinical practice and expanding access to minimally invasive obesity therapies.” Marcus Felstead, Chief Comm

Resilience Takes Center Stage as Europe’s LEED Community Gathers in Milan for GBCI Europe Circle 20267.5.2026 10:57:00 EEST | Press release

Green Business Certification Inc. Europe (GBCI), is hosting Circle 2026, the annual flagship event of the European LEED community, taking place in Milan from May 6–8 and marking its fifth anniversary. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260506692329/en/ Porta Nuova, Milan - LEED v4.1 Communities: Existing, Gold certification. Photo courtesy of COIMA. At the center of discussions is LEED v5, the latest version of the world’s most widely used green building rating system, as a bridge to EU Taxonomy alignment - a critical priority for the European market, where regulatory pressure and investor demand are accelerating the integration of certification, finance, and ESG reporting. GBCI Europe Impact Report 2026: European Real Estate Shifts from Sustainability to Risk Management As part of the main conference program, Peter Templeton, President and CEO of USGBC and GBCI will present the GBCI Europe Impact Report 2026, ba

Criteo Selects Navan to Modernize Global Travel Management7.5.2026 10:00:00 EEST | Press release

Navan (NASDAQ: NAVN), the global AI-powered business travel and expense platform, today announced that it has been selected by Criteo, the global commerce intelligence platform, to modernize its global travel program. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260507251188/en/ Global commerce intelligence platform delivers high employee satisfaction with Navan Criteo set out to provide its global workforce with an easy-to-use travel booking experience that brought visibility and control to its travel spending. Prioritizing operational excellence and employee experience, Criteo selected Navan because of its extensive inventory, unified travel and payments platform, and global expertise in sustainability reporting. “We wanted to give our teams a travel tool that’s as easy to use as the apps they use in their personal lives,” said Sarah Glickman, Chief Financial Officer at Criteo. “Our goal with Navan was to improve the use

LMR Naturals to Showcase Leadership in Natural Ingredients at SIMPPAR, the International Exhibition of Raw Materials for Perfumery7.5.2026 10:00:00 EEST | Press release

LMR Naturals by IFF — a global leader in natural ingredients for perfumery, cosmetics and flavors — will debut its latest innovations at the International Exhibition of Raw Materials for Perfumery (SIMPPAR), May 26–27 in Grasse. During the industry event, IFF will unveil new additions to its LMR Hearts collection, highlighting its naturals expertise and pioneering science. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260506065669/en/ Bernard Blerot, VP R&D Naturals at IFF, smelling geranium in a botanical research laboratory. “Responsible innovation has always been central to LMR,” said Bertrand de Préville, general manager of LMR. “Our strength lies in our ability to master the full range of natural technologies to support perfumers’ creativity. We’re connecting nature, science and creation to drive sustainable growth and deliver added value to our customers at global scale.” Four New LMR Hearts Introduced at SIMPPAR LMR

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye