What Is DORA?
The Digital Operations Resilience Act (DORA) is a piece of EU legislation relating to the cyber security and digital of financial institutions...
Which Organisations Does DORA Apply to?
DORA is applicable to a wide range of organisations in the financial sector, including banks, insurance companies...
How does DORA differ from ISO 27001?
If your organisation is already certified to ISO 27001, this will provide a strong starting point for compliance with DORA, as the two cover...
How is DORA structured?
DORA is structured around five core ‘pillars’ that relate to ICT and cyber security, which aim to provide a comprehensive digital resiliency framework for financial organisations...
What are the regulatory technical standards (RTS) and implementing technical standards (ITS)?
In addition to DORA itself, the European Supervisory Authorities (ESAs) have produced a number of regulatory technical standards (RTS)...
How is DORA enforced?
DORA is enforced by designated regulators in each EU member state, known as competent authorities. These competent authorities can request that financial organisations implement...

DORA - The Digital Operations Resilience Act
URM’s blog discusses the EU’s Digital Operation’s Resilience Act (DORA), explaining who it will apply to, its requirements, how it will be enforced, and more.
URM’s blog explains how the principles of confidentiality, integrity and availability (CIA) can help align your information security controls with best practice
URM’s blog explores ISO 27001 Clause 9.1, what it requires and practical guidance on how to implement this Clause in full conformance with the Standard.
URM’s blog explains the purpose & requirements of ISO 27001 Clause 6.3, types of ISMS change it covers, and key considerations when putting it into practice.

