IL-ISACA
14.10.2021 16:21:10 CEST | Business Wire | Press release
Reforms following the 2008 financial crisis helped strengthen the resilience of the financial sector, but did not fully address digital operational resilience. The European Union’s recently released Digital Operational Resilience Act (DORA) draft is designed to provide digital operational resilience rules for EU financial institutions, and ISACA provides guidance on this proposal in its new white paper, Digital Operational Resilience in the EU Financial Sector: A Risk-Based Approach .
When finalized, DORA will enact rules for financial services system operators like investment firms, credit institutions, trading venues and electronic money institutions to ensure these systems’ stability and resilience to cyber incidents. Digital Operational Resilience in the EU Financial Sector outlines the objectives and legal basis for DORA, as well as its information and communication technology (ICT) requirements around risk management, information and cybersecurity, incident reporting, testing, and oversight of third-party service providers, some of which include:
- Set up and maintain resilient ICT systems and tools that minimize the impact of ICT risk.
- Have an ICT risk-management framework that includes strategies, policies, procedures, ICT protocols and tools necessary to effectively protect all relevant physical components and infrastructures from risk, such as damage and unauthorized access or usage.
- Test the ICT business continuity policy and the ICT disaster recovery plan at least yearly, and after substantive changes to the ICT systems.
- Include relevant provisions on accessibility, availability, integrity, security and protection of personal data, and guarantees for access, recover and return in the case of failures of the ICT third-party service providers in contracts that govern the relationship with third-party providers.
“The requirements laid out in DORA to identify all sources of ICT risk on a continuous basis and mandate an annual review of ICT risk management frameworks and review after a major incident, audit or testing are a step in the right direction,” says Chris Dimitriadis, ISACA chief global strategy officer. “However, to further strengthen the act, ISACA encourages provisions ensuring that ICT risk management plans go beyond being a compliance exercise by embedding governance responsibility within the management body, as well as requiring continuous training and ICT awareness of senior management and staff and independent testing performed by testers who are certified.”
During this period in which the DORA regulation is under consideration in the European Parliament and Council of the EU, ISACA’s EU Task Force is engaging with policy makers and sharing feedback. The final version of the regulation is expected in an estimated 18-24 months.
“ISACA is recognized among policy makers as an independent source of expertise on cybersecurity issues. The variety of backgrounds and experience of our members, reflected in the EU Task Force, have been welcomed by policy makers who have valued our contributions to the debate,” says Emily Bastedo, ISACA director for global government relations and public affairs.
To download a complimentary copy of Digital Operational Resilience in the EU Financial Sector , visit https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004L1sxEAC . Additional publications that may be helpful for financial entities as they prepare for DORA include ISACA’s Risk IT Framework , 2nd Edition ; Risk IT Practitioner Guide, 2nd Edition ; and IT Risk Fundamentals Study Guide . Other IT risk-related resources can be found at www.isaca.org/resources/it-risk .
About ISACA
For more than 50 years, ISACA® (www.isaca.org ) has advanced the best talent, expertise and learning in technology. ISACA equips individuals with knowledge, credentials, education and community to progress their careers and transform their organizations, and enables enterprises to train and build quality teams. ISACA is a global professional association and learning organization that leverages the expertise of its more than 150,000 members who work in information security, governance, assurance, risk and privacy to drive innovation through technology. It has a presence in 188 countries, including more than 220 chapters worldwide. In 2020, ISACA launched One In Tech, a philanthropic foundation that supports IT education and career pathways for under-resourced, under-represented populations.
Twitter:
www.twitter.com/ISACANews
LinkedIn:
www.linkedin.com/company/isaca
Facebook:
www.facebook.com/ISACAGlobal
Instagram:
www.instagram.com/isacanews
View source version on businesswire.com: https://www.businesswire.com/news/home/20211014005760/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Operio Group Named Distributor for Schaefer Technologies in the United Kingdom and European Union9.3.2026 22:00:00 CET | Press release
Operio Group has signed a distribution agreement with Schaefer Technologies, a manufacturer of semi-automatic encapsulation equipment. Operio Group, a holding company building a global group of brands serving the solid dose manufacturing industry, will be the official distributor of Schaefer Technologies’ products in the United Kingdom and the European Union. Schaefer Technologies develops semi-automatic capsule filling systems, including equipment that produces banded capsules for liquid and pellet formulations used by nutraceutical and pharmaceutical manufacturers. Leadership from both companies worked together to establish the agreement, including Kevin Schaefer, CEO of Schaefer Technologies Inc., and Alastair Sanderson, Chief Business Development Officer at Operio Group. “Schaefer Technologies is looking forward to our new relationship with Operio Group,” said Schaefer. “Their understanding of the pharmaceutical equipment market makes them a strong partner as we combine our experti
Kinaxis Goes All-In on Innovation at Upcoming Kinexions in Las Vegas9.3.2026 19:00:00 CET | Press release
Annual customer conference will bring together global supply chain leaders to explore the latest trends, best practices and technologies in AI-powered planning, decision-making and agentic innovation Registration is officially open for Kinexions North America, the premier global supply chain orchestration conference hosted by Kinaxis® Inc. (TSX: KXS). Taking place June 1–3 in Las Vegas, Nevada, the event brings together supply chain leaders, innovators and practitioners from around the world to explore how organizations can leverage AI-driven strategies and technologies to connect data, people and decisions. After a year defined by market volatility, geopolitical risk and disruption, this year’s conference will focus on how intelligent supply chain orchestration enables organizations to move beyond reactive planning to building true enterprise adaptability. The program promises to be the most immersive and future-forward Kinexions yet, with renowned author, entrepreneur and innovation
InterSystems Appoints Former NHS and Mass General Leader Dr. Tim Ferris as Vice President, Healthcare Practice9.3.2026 17:00:00 CET | Press release
InterSystems, a creative data technology provider powering more than one billion health records globally, today announced the appointment of Tim Ferris, M.D., as Vice President, Healthcare Practice. The announcement comes as healthcare leaders gather for the 2026 HIMSS Global Health Conference & Exhibition. In this role, Dr. Ferris will leverage his comprehensive view of the industry to help drive the clinical and strategic direction of the company’s healthcare solutions worldwide. Drawing on his vast experience, he will serve as a strategic advisor to global health systems and governments, engineer targeted technology solutions based on real-world executive needs, advance his academic research on health data architecture and lead public discourse on the intersection of AI and care delivery. Dr. Ferris brings a unique global perspective to InterSystems that is virtually unmatched in healthcare. His career spans 30 years as a practicing primary care physician, executive leadership at pr
Radial Selects Riskified to Power Payment Fraud and Refund/Return Protection for Merchant Client Portfolio9.3.2026 15:00:00 CET | Press release
The partnership brings Riskified’s AI-powered platform for payment fraud, refund claim, and return abuse protection to Radial’s global network of merchants Riskified (NYSE: RSKD), a leader in ecommerce fraud and risk intelligence, today announced a strategic partnership with Radial, a leading 3PL set to become Paxon later this year. Radial will integrate with Riskified’s AI-powered platform to help its merchants approve more legitimate orders and reduce losses from payment fraud, including many merchants that use Shopify as their ecommerce platform. Radial supports many of the world’s most recognized retail brands with a global ecommerce fulfillment network of more than 20 centers across North America, helping merchants deliver orders quickly and cost effectively. By bringing Riskified’s AI-powered fraud decisioning into its commerce ecosystem, Radial gives merchants the surgical ability to calibrate the checkout experience according to risk—without slowing fulfillment. This also suppo
Boomi Activates Data for the Enterprise9.3.2026 14:00:00 CET | Press release
New platform innovations activate contextual data to power production-scale enterprise AI, with a new European platform instance for localized control Boomi™, the data activation company, today announced new capabilities within the Boomi Enterprise Platform. Data activation brings data to life across systems and processes, delivering it with the right context and timing to power everything from AI to BI. The Boomi Enterprise Platform, the foundation that puts data in motion, now adds new semantic context to help AI agents operate on grounded business realities, expands governed SAP data movement with change data capture, enhances transparency and oversight across agentic workflows, and introduces a dedicated European platform instance for localized data control. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260309682526/en/ Boomi Activates Data for the Enterprise “Last year, Boomi helped enterprises move from experimentatio
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
