Business Wire

IL-ISACA

14.10.2021 16:21:10 CEST | Business Wire | Press release

Share
ISACA Provides Guidance Around EU’s Proposed Digital Operational Resilience Act

Reforms following the 2008 financial crisis helped strengthen the resilience of the financial sector, but did not fully address digital operational resilience. The European Union’s recently released Digital Operational Resilience Act (DORA) draft is designed to provide digital operational resilience rules for EU financial institutions, and ISACA provides guidance on this proposal in its new white paper, Digital Operational Resilience in the EU Financial Sector: A Risk-Based Approach .

When finalized, DORA will enact rules for financial services system operators like investment firms, credit institutions, trading venues and electronic money institutions to ensure these systems’ stability and resilience to cyber incidents. Digital Operational Resilience in the EU Financial Sector outlines the objectives and legal basis for DORA, as well as its information and communication technology (ICT) requirements around risk management, information and cybersecurity, incident reporting, testing, and oversight of third-party service providers, some of which include:

  • Set up and maintain resilient ICT systems and tools that minimize the impact of ICT risk.
  • Have an ICT risk-management framework that includes strategies, policies, procedures, ICT protocols and tools necessary to effectively protect all relevant physical components and infrastructures from risk, such as damage and unauthorized access or usage.
  • Test the ICT business continuity policy and the ICT disaster recovery plan at least yearly, and after substantive changes to the ICT systems.
  • Include relevant provisions on accessibility, availability, integrity, security and protection of personal data, and guarantees for access, recover and return in the case of failures of the ICT third-party service providers in contracts that govern the relationship with third-party providers.

“The requirements laid out in DORA to identify all sources of ICT risk on a continuous basis and mandate an annual review of ICT risk management frameworks and review after a major incident, audit or testing are a step in the right direction,” says Chris Dimitriadis, ISACA chief global strategy officer. “However, to further strengthen the act, ISACA encourages provisions ensuring that ICT risk management plans go beyond being a compliance exercise by embedding governance responsibility within the management body, as well as requiring continuous training and ICT awareness of senior management and staff and independent testing performed by testers who are certified.”

During this period in which the DORA regulation is under consideration in the European Parliament and Council of the EU, ISACA’s EU Task Force is engaging with policy makers and sharing feedback. The final version of the regulation is expected in an estimated 18-24 months.

“ISACA is recognized among policy makers as an independent source of expertise on cybersecurity issues. The variety of backgrounds and experience of our members, reflected in the EU Task Force, have been welcomed by policy makers who have valued our contributions to the debate,” says Emily Bastedo, ISACA director for global government relations and public affairs.

To download a complimentary copy of Digital Operational Resilience in the EU Financial Sector , visit https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004L1sxEAC . Additional publications that may be helpful for financial entities as they prepare for DORA include ISACA’s Risk IT Framework , 2nd Edition ; Risk IT Practitioner Guide, 2nd Edition ; and IT Risk Fundamentals Study Guide . Other IT risk-related resources can be found at www.isaca.org/resources/it-risk .

About ISACA

For more than 50 years, ISACA® (www.isaca.org ) has advanced the best talent, expertise and learning in technology. ISACA equips individuals with knowledge, credentials, education and community to progress their careers and transform their organizations, and enables enterprises to train and build quality teams. ISACA is a global professional association and learning organization that leverages the expertise of its more than 150,000 members who work in information security, governance, assurance, risk and privacy to drive innovation through technology. It has a presence in 188 countries, including more than 220 chapters worldwide. In 2020, ISACA launched One In Tech, a philanthropic foundation that supports IT education and career pathways for under-resourced, under-represented populations.

Twitter: www.twitter.com/ISACANews
LinkedIn: www.linkedin.com/company/isaca
Facebook: www.facebook.com/ISACAGlobal
Instagram: www.instagram.com/isacanews

Link:

ClickThru

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Align Partners Issues Formal Shareholder Proposals to Gabia13.2.2026 01:37:00 CET | Press release

Align Partners Capital Management Inc. (“Align Partners”), a shareholder of Gabia, Inc. (“Gabia” or the “Company”), has submitted formal shareholder proposals for inclusion in the agenda of Gabia’s upcoming 27th Annual General Meeting (“AGM”) and issued a call for strengthened governance practices to address the Company’s persistent undervaluation. Align Partners noted that, as shareholder proposals will be presented at this year’s AGM, Gabia should follow the Korea Exchange (KRX) Corporate Governance Key Indicators by publishing the AGM convocation notice at least four weeks prior to the meeting date. Align Partners emphasized that last year’s AGM notice was issued only 16 days before the meeting, limiting shareholders’ ability to adequately review the agenda and exercise informed voting rights. Gabia is widely recognized as a leading Korean IT services and cloud infrastructure company with solid operating performance. Despite these strengths, Align Partners believes the Company conti

Andersen Consulting udvider sin platform i Nordamerika med tilføjelsen af Kezber12.2.2026 22:50:00 CET | Pressemeddelelse

Andersen Consulting styrker sine ydelser inden for forretningstransformation og cybersikkerhed med tilføjelsen af den canadisk-baserede samarbejdsvirksomhed Kezber. Kezber blev stiftet i 1996 og specialiserer sig i at levere en komplet pakke af it-løsninger, herunder managed it-services, infrastruktursupport, cybersikkerhed, cloudtjenester, specialudviklet software, business intelligence og ai-tjenester samt automatisering af forretningsprocesser. Firmaet samarbejder med organisationer med henblij på at øge produktiviteten, modernisere deres teknologiske miljøer og udnytte datadrevne løsninger til at nå strategiske mål. "Vores samarbejde med Andersen Consulting giver os mulighed for at inddrage hele vores pakke af software og it-tjenester i en bredere konsulentramme," udtaler Alan Kezber, administrerende direktør for Kezber. "Ved at integrere vores tekniske ekspertise med Andersen Consultings omfattende konsulentkompetencer kan vi tilbyde kunderne løsninger, der skaber driftsforbedring

Europe Launches Euro-Q-Exa Quantum Computer in Germany, Strengthening Sovereign Digital Infrastructure12.2.2026 21:15:00 CET | Press release

Euro-Q-Exa will serve the scientific community and industry across Germany and Europe, enabling hands-on quantum research and application development within Europe’s HPC ecosystem. Installed, hosted, and operated at Leibniz Supercomputing Centre (LRZ), ensuring local control, operational expertise, and long-term capability building. Developed by IQM Quantum Computers using its Radiance platform, designed to enable institutions to build, operate, and evolve their own quantum capability. Engineered for deep integration with high-performance computing, supporting scalable hybrid quantum–HPC workflows. Co-funded by the EuroHPC Joint Undertaking, the German Federal Ministry of Research, Technology and Space (BMFTR), and the Bavarian State Ministry of Science and the Arts (StWK). Euro-Q-Exa, the first EuroHPC Joint Undertaking quantum computer deployed in Germany, has been unveiled at the Leibniz Supercomputing Centre (LRZ) in Garching, Munich. This press release features multimedia. View th

Sindre Zeiner-Gundersen Joins Joi Scientific12.2.2026 20:00:00 CET | Press release

Joi Scientific is pleased to welcome Sindre Zeiner-Gundersen as the company’s Advanced Plasma & Resonant Energy Physicist. Sindre will lead Joi’s scientific activities including all aspects of Joi’s science program. Sindre is a quantum physics expert who previously served as CEO/President of Nornec AS, a Norwegian consulting and engineering services company. Nornec has been a consultant to Joi since 2024. At Nornec, Sindre provided consulting and R&D services in the areas of advanced nuclear reactor simulations, process and plant optimization, carbon capture optimization, materials selection and radiation effects, custom reactor design, muon and neutron detector systems, muon and catalyzed fusion and Hydrogen Rydberg Matter research. An applied physicist with end‑to‑end expertise in energy‑carrier gases - ammonia, methanol, hydrogen - as well as a radiation instrumentation specialist with experience in process and equipment design across the ammonia/hydrogen value chain, Sindre has aut

Angelalign Technology Inc. (6699.HK) Says a Preliminary European Court Ruling on Certain Software Features Will Have Minimal Impact on Users12.2.2026 17:58:00 CET | Press release

Angelalign Technology Inc. (6699.HK) (“Angel”) said a ruling by the Unified Patent Court of Düsseldorf, Germany that it preliminarily cease its use of certain software functions that automatically update treatment plans would have minimal impact on the orthodontists and patients who use its clear aligner products. The ruling applies to certain European countries and excludes Spain, Switzerland, United Kingdom and Ireland. Angel will launch iPlan for applicable European users, which is an upgrade feature that has the same reliability and more flexibility for users. Angel denies that the Live Now feature in its iOrtho treatment planning software infringes any valid patents of Align Technology Inc. (ALGN). Angel has already filed an opposition against the patent with the European Patent Office (EPO), arguing that the claimed invention is neither novel nor inventive over the prior art, and is seeking its permanent invalidation. Angel is confident it will overcome the first-instance, non-fi

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye