Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Advertising and Sponsorship
    • Profile & Readership
    • Contact Us
    • Latest News
    • Privacy & Cookies Policies
    • Terms of Use
    • Advertising Terms
    • Issue 81
    • Issue 80
    • Issue 79
    • Issue 78
    • Issue 77
    • Issue 76
    • Issue 75
    • Issue 74
    • Issue 73
    • Issue 72
    • Issue 71
    • Issue 70
    • View All
    • About the Awards
    • Awards Timetable
    • Awards Winners
    • Submit Nominations
    • Testimonials
    • Media Room
    • FAQ
    • Asset Management Awards
    • Brand of the Year Awards
    • Business Awards
    • Cash Management Banking Awards
    • Banking Technology Awards
    • CEO Awards
    • Customer Service Awards
    • CSR Awards
    • Deal of the Year Awards
    • Corporate Governance Awards
    • Corporate Banking Awards
    • Digital Transformation Awards
    • Fintech Awards
    • Education & Training Awards
    • ESG & Sustainability Awards
    • ESG Awards
    • Forex Banking Awards
    • Innovation Awards
    • Insurance & Takaful Awards
    • Investment Banking Awards
    • Investor Relations Awards
    • Leadership Awards
    • Islamic Banking Awards
    • Real Estate Awards
    • Project Finance Awards
    • Process & Product Awards
    • Telecommunication Awards
    • HR & Recruitment Awards
    • Trade Finance Awards
    • The Next 100 Global Awards
    • Wealth Management Awards
    • Travel Awards
    • Years of Excellence Awards
    • Publishing Principles
    • Ownership & Funding
    • Corrections Policy
    • Editorial Code of Ethics
    • Diversity & Inclusion Policy
    • Fact Checking Policy
    Original content: Global Banking and Finance Review - https://www.globalbankingandfinance.com

    A global financial intelligence and recognition platform delivering authoritative insights, data-driven analysis, and institutional benchmarking across Banking, Capital Markets, Investment, Technology, and Financial Infrastructure.

    Copyright © 2010-2026 - All Rights Reserved. | Sitemap | Tags

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    1. Home
    2. >Business
    3. >The Digital Operational Resilience Act (DORA) is on the way, but what does that mean for businesses?
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Business

    The Digital Operational Resilience Act (dora) Is on the Way, but What Does That Mean for Businesses?

    Published by Jessica Weisman-Pitts

    Posted on March 8, 2022

    5 min read

    Last updated: February 8, 2026

    Add as preferred source on Google
    This abstract graphic of a global map symbolizes the Digital Operational Resilience Act (DORA) and its impact on financial institutions. The image emphasizes the importance of digital resilience and risk mitigation strategies in the banking sector.
    Abstract illustration of a global map highlighting digital resilience in finance - Global Banking & Finance Review
    Tags:compliancecybersecurityrisk managementfinancial servicesDigital transformation

    By Angus Panton, Business Unit Director, Expleo

    Resilience and the ability to maintain continuous service in the face of multiple threats and challenges is a major theme for financial institutions in 2022.For digital-first organisations, this means putting a proactive risk mitigation strategy in place to avoid customer service interruptions, enabling faster recovery from outages, and ensuring preparedness for potential vulnerabilities – and being compliant with evolving regulation.

    The security threats faced by financial institutions are well-documented with mitigation being part of maintaining daily operational integrity, so it comes as no surprise when we see research that show financial services is the most targeted industry by cyber criminals (Kroll, Q3 2021) accounting for almost 13% of all cyberattacks, including email phishing scams and ransomware.

    Many in the industry say enough is enough – the risks are too high and the impact is too far reaching for us not to act, and this means new legislation. In response, the European Commission has proposed the Digital Operational Resilience Act (DORA), which aims to streamline and mitigate risks associated with digital transformation across financial institutions in the EU. Expected to become law in 2024, the act proposes a unified approach to reforming the regulatory framework across financial enterprises in the EU. And while DORA is not directly applicable to the UK, there is good reason for UK financial entities to be aware as it has the potential to shape outsourcing and third-party risk regulation for engaging with entities inside the EU. Global and international organisations that work across borders will need to meet the requirements of each jurisdiction.

    The Act itself is complex, multi-faceted and the details are still being refined. As a result, many financial institutions are struggling to understand its various implications, including its potential to provide a harmonised approach towards better management of the various risks associated with ICT, and particularly critical third-party ICT suppliers.

    To prepare for the new regulatory framework, we advise businesses adopt a five-point approach to help them identify current operational deficiencies and develop a compliance strategy to navigate this new ground.

    1. Build your digital operational resilience awareness

    Invest time and resource into understanding the implications of the legislation ahead of it coming into EU law. This includes figuring out the scope of work required, allocating resources and identifying the opportunities that come with enhanced DOR.

    An effective way for your organisation to ensure it meets the requirements of the Act is to perform a gap analysis against the requirements of the regulation, and as part of this complete a risk assessment for your organisation to discover the gaps in your compliance.

    1. Train and coach your people

    To get ahead of DOR you need to take your people with you – make sure you cover training and bring them up to speed with the changing requirements and demands that come with increasing digital transformation.

    To help you with this, we’d recommend seeking the support of training and coaching programs offered by industry and regulatory experts to ensure employees understand new incident classification standards, terminology and acronyms related to DORA, and its implications for your business.

    And it can be highly beneficial to look at enhanced training support for those people who are directly involved in shouldering the responsibility for testing and monitoring adherence to the new regulations. This will help ensure they are able to spot weaknesses in the system that have the potential to impact operational resilience.

    1. Vet your third-party providers

    As many financial institutions rely on the capabilities of third-party vendors to support their overall offering, it’s time to re-evaluate your relationships with these service providers. We recommend you start by reviewing their technical acumen, industry standing and the selection of tools they have at their disposal to facilitate regulatory-compliant DOR.

    Look at it this way – as we become increasingly reliant on external IT providers to support the management of our business processes and customer data, we see a correlated increase in susceptibility to various forms of cyberattacks, including identity theft and ransomware. So, paying attention to your third parties and their preparedness for DORA is key to overall resilience.

    1. Set up robust testing procedures

    As DORA is set to mandate technical testing, it’s important to look at establishing strong measures and controls on systems, tools, and people to ensure that they can endure these procedures.

    Work with you organisation to establish comprehensive testing programmes that examine the security and integrity of your system architecture. Such a programme will give your people a better understanding of how to avoid or respond to threats and incidents in the future. Consider also clearly defining your team’s responsibilities and timelines in relation to any such testing programme

    1. Establish a reporting mechanism

    Reporting plays a crucial role in tracking the progress of any digital transformation project and this remains true for financial institutions who are planning a DORA compliance strategy.

    Developing best-in-class reporting frameworks will enable you to tighten up communications around incidents. And by establishing compulsory and standardised reporting for all major incidents, you gain greater control over the management of new internal reporting processes, which will help to minimise disruption to operations.

    While the road to preparing for DORA may seem complex, with a better understanding of various ICT risk management issues and the right guidance from experts, we believe financial institutions can successfully navigate this legislative change and be in an enhanced position to provide customers with continuous, high availability service.

    Frequently Asked Questions about The Digital Operational Resilience Act (DORA) is on the way, but what does that mean for businesses?

    1What is the Digital Operational Resilience Act (DORA)?

    DORA is a proposed regulation by the European Commission aimed at enhancing the resilience of financial institutions against digital risks and ensuring compliance with evolving regulations.

    2What is operational resilience?

    Operational resilience refers to the ability of an organization to continue delivering services and recover from disruptions, particularly in the face of cyber threats and other challenges.

    3
    What is a risk assessment?

    A risk assessment is a systematic process of identifying, analyzing, and evaluating risks that could negatively impact an organization's operations or objectives.

    More from Business

    Explore more articles in the Business category

    Image for Submit Your Entry for Years of Excellence Awards 2026
    Submit Your Entry for Years of Excellence Awards 2026
    Image for Nominations Open for Travel & Hospitality Awards 2026
    Nominations Open for Travel & Hospitality Awards 2026
    Image for Submit Your Entry Today for Telecom Awards 2026
    Submit Your Entry Today for Telecom Awards 2026
    Image for Submit Your Entries for The Next 100 Global Awards 2026
    Submit Your Entries for the Next 100 Global Awards 2026
    Image for Submit Your Entry: Public Sector & Governance Excellence Awards 2026
    Submit Your Entry: Public Sector & Governance Excellence Awards 2026
    Image for Nominations Invited for Real Estate Development Awards 2026
    Nominations Invited for Real Estate Development Awards 2026
    Image for Submit Your Entry: Process & Product Awards 2026
    Submit Your Entry: Process & Product Awards 2026
    Image for Call for Entries: HR & Recruitment Awards 2026
    Call for Entries: HR & Recruitment Awards 2026
    Image for Submit Your Nominations Today for Education & Training Awards 2026
    Submit Your Nominations Today for Education & Training Awards 2026
    Image for Join the Corporate Governance Awards 2026: Showcase Your Organisation’s Leadership
    Join the Corporate Governance Awards 2026: Showcase Your Organisation’s Leadership
    Image for Submit Your Entry Today for Business Awards 2026
    Submit Your Entry Today for Business Awards 2026
    Image for Decentralized Masters’ ‘family culture’ building trust instead of hierarchy
    Decentralized Masters’ ‘family Culture’ Building Trust Instead of Hierarchy
    View All Business Posts
    Previous Business PostFriction-Free Payment Boosts Efficiency for Consumers and Businesses Alike
    Next Business PostHow Digital Marketers Can Capitalise on the Hybrid Customer Experience