Sisältökirjasto
Digital Operational Resilience Act (DORA)

Vaatimuskehikkoon sisältyvät vaatimukset

Vaatimuksen nimi
Tunniste
Vaatimuskehikko
Tehtävät
Detection

Article 10

Digital Operational Resilience Act (DORA)
10
Response and recovery

Article 11

Digital Operational Resilience Act (DORA)
9
Backup policies and procedures, restoration and recovery procedures and methods

Article 12

Digital Operational Resilience Act (DORA)
7
Learning and evolving

Article 13

Digital Operational Resilience Act (DORA)
7
Communication

Article 14

Digital Operational Resilience Act (DORA)
4
ICT-related incident management process

Article 17

Digital Operational Resilience Act (DORA)
8
Classification of ICT-related incidents and cyber threats

Article 18

Digital Operational Resilience Act (DORA)
1
Reporting of major ICT-related incidents and voluntary notification of significant cyber threats

Article 19

Digital Operational Resilience Act (DORA)
2
General requirements for the performance of digital operational resilience testing

Article 24

Digital Operational Resilience Act (DORA)
1
Testing of ICT tools and systems

Article 25

Digital Operational Resilience Act (DORA)
3
Advanced testing of ICT tools, systems and processes based on TLPT

Article 26

Digital Operational Resilience Act (DORA)
3
Requirements for testers for the carrying out of TLPT

Article 27

Digital Operational Resilience Act (DORA)
1
General principles

Article 28

Digital Operational Resilience Act (DORA)
4
Preliminary assessment of ICT concentration risk at entity level

Article 29

Digital Operational Resilience Act (DORA)
1
Key contractual provisions

Article 30

Digital Operational Resilience Act (DORA)
4
Information-sharing arrangements on cyber threat information and intelligence

Article 45

Digital Operational Resilience Act (DORA)
2
Governance and organisation

Article 5

Digital Operational Resilience Act (DORA)
8
ICT risk management framework

Article 6

Digital Operational Resilience Act (DORA)
10
ICT systems, protocols and tools

Article 7

Digital Operational Resilience Act (DORA)
4
Identification

Article 8

Digital Operational Resilience Act (DORA)
10
Protection

Article 9a

Digital Operational Resilience Act (DORA)
6
Prevention

Article 9b

Digital Operational Resilience Act (DORA)
11
Information-sharing arrangements

CHAPTER VI

Digital Operational Resilience Act (DORA)
1

Digital Operational Resilience Act (DORA)

The Digital Operational Resilience Act (DORA) on EU:n laki digitaalisen toiminnan resilienssistä. DORA:n avulla pyritään saavuttamaan yhtenäinen korkea digiresilienssi EU:n alueella. Se antaa yhtenäiset vaatimukset koskien tietoverkkoja ja -järjestelmiä, jotka tukevat rahoitusalan liiketoimintaprosesseja.

DORA asettaa vaatimuksia mm. suojauksesta, havaitsemisesta, eristämisestä, palautusta ja korjaamista tietoturvatapahtumiin liittyvissä tilanteissa. Lisäksi vaatimuksiin kuuluu laajaa riskien- ja häriöidenhallintaa, kyberuhkien ja haavoittuvuuksien jakaminen, vaatimukset resilienssin testaamisesta ja häiriöiden ilmoittamisesta viranomaisille.

Vaatimuskehikon teema-alueet

No items found.