Atgal į BlogąSMB Saugumas

[LT-07] DORA ICT Vendor Management: How ISO 27001...

[LT-07] DORA requires financial institutions to maintain rigorous oversight of ICT vendors including annual assessments and incident notification...

April 20, 20268 min skaityti
DORA ICT vendor managementISO 27001 DORA compliancefinancial institution vendor riskannual vendor assessmentMiFID II vendor oversight

[LT-07]

DORA's ICT Vendor Obligations

The EU Digital Operational Resilience Act (DORA), effective January 2025, requires financial institutions — banks, insurance companies, investment firms, payment service providers — to implement rigorous ICT third-party risk management programs. Key requirements:

Mandatory contractual provisions (Article 30): DORA specifies mandatory clauses for contracts with ICT third-party service providers, including provisions for full access, inspection, and audit ri...

Pasiruošę apsaugoti savo duomenis?

Pradėkite anonimizuoti PII su 285+ subjektų tipais 48 kalbomis.