Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > The Digital Operational Resilience Act (DORA) is on the way, but what does that mean for businesses?
    Business

    The Digital Operational Resilience Act (DORA) is on the way, but what does that mean for businesses?

    Published by Jessica Weisman-Pitts

    Posted on March 8, 2022

    5 min read

    Last updated: January 20, 2026

    This abstract graphic of a global map symbolizes the Digital Operational Resilience Act (DORA) and its impact on financial institutions. The image emphasizes the importance of digital resilience and risk mitigation strategies in the banking sector.
    Abstract illustration of a global map highlighting digital resilience in finance - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    By Angus Panton, Business Unit Director, Expleo

    Resilience and the ability to maintain continuous service in the face of multiple threats and challenges is a major theme for financial institutions in 2022.For digital-first organisations, this means putting a proactive risk mitigation strategy in place to avoid customer service interruptions, enabling faster recovery from outages, and ensuring preparedness for potential vulnerabilities – and being compliant with evolving regulation.

    The security threats faced by financial institutions are well-documented with mitigation being part of maintaining daily operational integrity, so it comes as no surprise when we see research that show financial services is the most targeted industry by cyber criminals (Kroll, Q3 2021) accounting for almost 13% of all cyberattacks, including email phishing scams and ransomware.

    Many in the industry say enough is enough – the risks are too high and the impact is too far reaching for us not to act, and this means new legislation. In response, the European Commission has proposed the Digital Operational Resilience Act (DORA), which aims to streamline and mitigate risks associated with digital transformation across financial institutions in the EU. Expected to become law in 2024, the act proposes a unified approach to reforming the regulatory framework across financial enterprises in the EU. And while DORA is not directly applicable to the UK, there is good reason for UK financial entities to be aware as it has the potential to shape outsourcing and third-party risk regulation for engaging with entities inside the EU. Global and international organisations that work across borders will need to meet the requirements of each jurisdiction.

    The Act itself is complex, multi-faceted and the details are still being refined. As a result, many financial institutions are struggling to understand its various implications, including its potential to provide a harmonised approach towards better management of the various risks associated with ICT, and particularly critical third-party ICT suppliers.

    To prepare for the new regulatory framework, we advise businesses adopt a five-point approach to help them identify current operational deficiencies and develop a compliance strategy to navigate this new ground.

    1. Build your digital operational resilience awareness

    Invest time and resource into understanding the implications of the legislation ahead of it coming into EU law. This includes figuring out the scope of work required, allocating resources and identifying the opportunities that come with enhanced DOR.

    An effective way for your organisation to ensure it meets the requirements of the Act is to perform a gap analysis against the requirements of the regulation, and as part of this complete a risk assessment for your organisation to discover the gaps in your compliance.

    1. Train and coach your people

    To get ahead of DOR you need to take your people with you – make sure you cover training and bring them up to speed with the changing requirements and demands that come with increasing digital transformation.

    To help you with this, we’d recommend seeking the support of training and coaching programs offered by industry and regulatory experts to ensure employees understand new incident classification standards, terminology and acronyms related to DORA, and its implications for your business.

    And it can be highly beneficial to look at enhanced training support for those people who are directly involved in shouldering the responsibility for testing and monitoring adherence to the new regulations. This will help ensure they are able to spot weaknesses in the system that have the potential to impact operational resilience.

    1. Vet your third-party providers

    As many financial institutions rely on the capabilities of third-party vendors to support their overall offering, it’s time to re-evaluate your relationships with these service providers. We recommend you start by reviewing their technical acumen, industry standing and the selection of tools they have at their disposal to facilitate regulatory-compliant DOR.

    Look at it this way – as we become increasingly reliant on external IT providers to support the management of our business processes and customer data, we see a correlated increase in susceptibility to various forms of cyberattacks, including identity theft and ransomware. So, paying attention to your third parties and their preparedness for DORA is key to overall resilience.

    1. Set up robust testing procedures

    As DORA is set to mandate technical testing, it’s important to look at establishing strong measures and controls on systems, tools, and people to ensure that they can endure these procedures.

    Work with you organisation to establish comprehensive testing programmes that examine the security and integrity of your system architecture. Such a programme will give your people a better understanding of how to avoid or respond to threats and incidents in the future. Consider also clearly defining your team’s responsibilities and timelines in relation to any such testing programme

    1. Establish a reporting mechanism

    Reporting plays a crucial role in tracking the progress of any digital transformation project and this remains true for financial institutions who are planning a DORA compliance strategy.

    Developing best-in-class reporting frameworks will enable you to tighten up communications around incidents. And by establishing compulsory and standardised reporting for all major incidents, you gain greater control over the management of new internal reporting processes, which will help to minimise disruption to operations.

    While the road to preparing for DORA may seem complex, with a better understanding of various ICT risk management issues and the right guidance from experts, we believe financial institutions can successfully navigate this legislative change and be in an enhanced position to provide customers with continuous, high availability service.

    More from Business

    Explore more articles in the Business category

    Image for Empire Lending helps SMEs secure capital faster, without bank delays
    Empire Lending helps SMEs secure capital faster, without bank delays
    Image for Why Leen Kawas is Prioritizing Strategic Leadership at Propel Bio Partners
    Why Leen Kawas is Prioritizing Strategic Leadership at Propel Bio Partners
    Image for How Commercial Lending Software Platforms Are Structured and Utilized
    How Commercial Lending Software Platforms Are Structured and Utilized
    Image for Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Oil Traders vs. Tech Startups: Surprising Lessons from Two High-Stakes Worlds | Said Addi
    Image for Why More Mortgage Brokers Are Choosing to Join a Network
    Why More Mortgage Brokers Are Choosing to Join a Network
    Image for From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    From Recession Survivor to Industry Pioneer: Ed Lewis's Data Revolution
    Image for From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    From Optometry to Soul Vision: The Doctor Helping Entrepreneurs Lead With Purpose
    Image for Global Rankings Revealed: Top PMO Certifications Worldwide
    Global Rankings Revealed: Top PMO Certifications Worldwide
    Image for World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    World Premiere of Midnight in the War Room to be Hosted at Black Hat Vegas
    Image for Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Role of Personal Accident Cover in 2-Wheeler Insurance for Owners and Riders
    Image for The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    The Young Rich Lister Who Also Teaches: How Aaron Sansoni Built a Brand Around Execution
    Image for Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    Q3 2025 Priority Leadership: Tom Priore and Tim O'Leary Balance Near-Term Challenges with Long-Term Strategic Wins
    View All Business Posts
    Previous Business PostFriction-free payment boosts efficiency for consumers and businesses alike
    Next Business PostHow digital marketers can capitalise on the hybrid customer experience