1Introduction
The Digital Operational Resilience Act, Regulation (EU) 2022/2554, applies from 17 January 2025 to banks, insurers, payment firms and many other financial entities.
2Discussion
Its pillars are ICT risk management, reporting of major incidents, regular resilience testing, third-party ICT risk management and cyber threat information sharing.
3Conclusion
A key innovation: critical ICT third-party providers, such as large cloud providers, come under direct oversight by EU financial supervisors for the first time.
Sources
همفکران فناوری شریفThis article summarises the official sources cited, prepared by the Hamfekran Fanavari Sharif team for finance leaders.
Want to see these solutions in your organisation?Book a free demo
همفکران فناوری شریف

