IL-ISACA
14.10.2021 16:21:10 CEST | Business Wire | Press release
Reforms following the 2008 financial crisis helped strengthen the resilience of the financial sector, but did not fully address digital operational resilience. The European Union’s recently released Digital Operational Resilience Act (DORA) draft is designed to provide digital operational resilience rules for EU financial institutions, and ISACA provides guidance on this proposal in its new white paper, Digital Operational Resilience in the EU Financial Sector: A Risk-Based Approach .
When finalized, DORA will enact rules for financial services system operators like investment firms, credit institutions, trading venues and electronic money institutions to ensure these systems’ stability and resilience to cyber incidents. Digital Operational Resilience in the EU Financial Sector outlines the objectives and legal basis for DORA, as well as its information and communication technology (ICT) requirements around risk management, information and cybersecurity, incident reporting, testing, and oversight of third-party service providers, some of which include:
- Set up and maintain resilient ICT systems and tools that minimize the impact of ICT risk.
- Have an ICT risk-management framework that includes strategies, policies, procedures, ICT protocols and tools necessary to effectively protect all relevant physical components and infrastructures from risk, such as damage and unauthorized access or usage.
- Test the ICT business continuity policy and the ICT disaster recovery plan at least yearly, and after substantive changes to the ICT systems.
- Include relevant provisions on accessibility, availability, integrity, security and protection of personal data, and guarantees for access, recover and return in the case of failures of the ICT third-party service providers in contracts that govern the relationship with third-party providers.
“The requirements laid out in DORA to identify all sources of ICT risk on a continuous basis and mandate an annual review of ICT risk management frameworks and review after a major incident, audit or testing are a step in the right direction,” says Chris Dimitriadis, ISACA chief global strategy officer. “However, to further strengthen the act, ISACA encourages provisions ensuring that ICT risk management plans go beyond being a compliance exercise by embedding governance responsibility within the management body, as well as requiring continuous training and ICT awareness of senior management and staff and independent testing performed by testers who are certified.”
During this period in which the DORA regulation is under consideration in the European Parliament and Council of the EU, ISACA’s EU Task Force is engaging with policy makers and sharing feedback. The final version of the regulation is expected in an estimated 18-24 months.
“ISACA is recognized among policy makers as an independent source of expertise on cybersecurity issues. The variety of backgrounds and experience of our members, reflected in the EU Task Force, have been welcomed by policy makers who have valued our contributions to the debate,” says Emily Bastedo, ISACA director for global government relations and public affairs.
To download a complimentary copy of Digital Operational Resilience in the EU Financial Sector , visit https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004L1sxEAC . Additional publications that may be helpful for financial entities as they prepare for DORA include ISACA’s Risk IT Framework , 2nd Edition ; Risk IT Practitioner Guide, 2nd Edition ; and IT Risk Fundamentals Study Guide . Other IT risk-related resources can be found at www.isaca.org/resources/it-risk .
About ISACA
For more than 50 years, ISACA® (www.isaca.org ) has advanced the best talent, expertise and learning in technology. ISACA equips individuals with knowledge, credentials, education and community to progress their careers and transform their organizations, and enables enterprises to train and build quality teams. ISACA is a global professional association and learning organization that leverages the expertise of its more than 150,000 members who work in information security, governance, assurance, risk and privacy to drive innovation through technology. It has a presence in 188 countries, including more than 220 chapters worldwide. In 2020, ISACA launched One In Tech, a philanthropic foundation that supports IT education and career pathways for under-resourced, under-represented populations.
Twitter:
www.twitter.com/ISACANews
LinkedIn:
www.linkedin.com/company/isaca
Facebook:
www.facebook.com/ISACAGlobal
Instagram:
www.instagram.com/isacanews
View source version on businesswire.com: https://www.businesswire.com/news/home/20211014005760/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Boomi, a 12X Leader, Positioned Highest for Ability to Execute in the 2026 Gartner® Magic Quadrant™ for Integration Platform as a Service18.3.2026 16:30:00 CET | Press release
Boomi™, the data activation company, today announced it has been recognized as a Leader and positioned highest for Ability to Execute in the 2026 Gartner® Magic Quadrant™ for Integration Platform as a Service (iPaaS). This marks the 12th consecutive time Boomi has been named a Leader– the longest recognized vendor in the report’s history. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260318987091/en/ Boomi, a 12X Leader, Positioned Highest for Ability to Execute in the 2026 Gartner® Magic Quadrant™ for Integration Platform as a Service Boomi attributes its continued industry recognition to its unwavering commitment to innovation, customer success, and ecosystem growth. Over the past year, Boomi has accelerated its investments in integration and automation, APIM, agent management, and data management to help enterprises transform fragmented systems and data into orchestrated processes and governed agentic workflows. Recent i
Laserfiche Announces 2026 Run Smarter® Award Winners18.3.2026 15:17:00 CET | Press release
Laserfiche — the leading SaaS provider of intelligent content management — today announced the winners of the 2026 Laserfiche Run Smarter® Awards. These awards celebrate the visionaries and trailblazers who are redefining the possible, using Laserfiche to break down operational silos and catalyze a new era of enterprise-wide productivity. From a large city reimagining criminal justice to a financial services firm’s innovative use of AI for smarter service delivery: The winners enhance productivity, reimagine processes and improve lives with Laserfiche technology. “The true power of Laserfiche has always been in how it unlocks value — whether that is through delivering actionable intelligence, cost savings, or reclaimed time to put toward innovation,” said Karl Chan, CEO of Laserfiche. “This year’s honorees are at the forefront of information management, with many of them leveraging cloud and AI technology to modernize processes and achieve business transformation.” Congratulations to t
I-Pulse Acquires CSI Technologies to Strengthen U.S. High-Energy Capacitor Manufacturing Capabilities18.3.2026 14:30:00 CET | Press release
I-Pulse Acquires California Capacitor Specialist CSI Technologies to Advance Disruptive Pulsed Power ApplicationsCSI Acquisition Secures Strategic Technologies Central to I-Pulse’s Pulsed Power Roadmap Co-Founder, Chairman, and CEO, Robert Friedland, and Co-Founder and Chief Technology Officer, Laurent Frescaline, of I-Pulse, the world leader in high pulsed power technologies, are pleased to announce the acquisition of CSI Technologies, Inc., the California-based manufacturer of high-energy, high-voltage capacitors serving industrial, medical, and defense applications. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260318099794/en/ The strategic acquisition enhances I-Pulse’s pulsed power development and U.S. manufacturing capabilities, particularly in mining, geothermal energy, mineral exploration, and water resource applications. By integrating CSI Technologies’ proven capacitor design and production expertise, I-Pulse str
Elliptic Integrates With Tempo, the Payments-First Blockchain18.3.2026 14:15:00 CET | Press release
Elliptic, the leader in digital asset decisioning, today announced full blockchain coverage for Tempo, the payments-first Layer-1 blockchain incubated by Stripe and Paradigm. With this integration, compliance and investigation teams gain full visibility into one of the most significant expansions of real-world financial activity onto blockchain infrastructure. "We're excited to have Elliptic providing compliance infrastructure on Tempo from day one. As payments move onchain at scale, builders and their customers need real-time tools to meet regulatory requirements without slowing down." – Nischay Upadhyayula, GTM, Tempo Tempo is a Layer-1 blockchain designed for real-world payments at scale, with sub-second finality and high throughput. Incubated by Stripe and Paradigm, Tempo is built for the transaction volumes that global commerce demands. Elliptic’s blockchain analytics platform is purpose-built to analyse on-chain data at this scale. “Tempo’s payment-specific blockchain infrastruct
RecVue Completes Acquisition of AiVidens18.3.2026 14:04:00 CET | Press release
Transaction advances RecVue RevOS into a unified revenue-to-cash Revenue Operating System RecVue, the leader in AI-powered billing and revenue management platforms for complex enterprise monetization, today announced it has completed the acquisition of AiVidens. By acquiring the cash management and collections platform, RecVue will enable enterprises to move beyond simple revenue automation to unify contract governance, billing, collections, revenue compliance, revenue sharing, and liquidity management all within a single revenue operating system. “This acquisition furthers our strategy to close the structural gap between revenue and cash,” said Nishant Nair, Founder and CEO of RecVue. “CFOs today are accountable not only for revenue accuracy, but for liquidity performance and working capital efficiency. With AiVidens, we are extending RevOS to connect commercial activity directly to cash realization.” While tasked with these widening responsibilities, enterprise CFOs struggle with dis
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
