Digital Operational Resilience Act (DORA)
Table of Contents
Chapter I – General provisions
Chapter II – ICT risk management
Chapter III – ICT-related incident management, classification and reporting
Chapter IV – Digital operational resilience testing
Chapter V – Managing of ICT third-party risk
Chapter VI – Information-sharing arrangements
Chapter VII – Competent authorities
Chapter VIII – Delegated acts
Chapter IX – Transitional and final provisions
Recitals (106)
Recital 102
(102) Since this Regulation, together with Directive (EU) 2022/2556 of the European Parliament and of the Council , entails a consolidation of the ICT risk management provisions across multiple regulations and directives of the Union’s financial services acquis , including Credit Rating Agencies Regulation (CRA Reg), (EU) No 648/2012, (EU) No 600/2014 and (EU) No 909/2014, and Benchmarks Regulation (BMR) of the European Parliament and of the Council , in order to ensure full consistency, those Regulations should be amended to clarify that the applicable ICT risk-related provisions are laid down in this Regulation.