Emem Umoh’s Post

View profile for Emem Umoh, graphic

GRC Expert (Cybersecurity and Privacy)|CISSP|CDPSE|CCISO|PCIP|CSA CP Tier-1|DPC CDPS|PECB Certified Trainer, Implementer, Auditor, Manager, Analyst, Consultant|EC-Council Certified Instructor|CSA Independent Assessor|

𝐃𝐢𝐠𝐢𝐭𝐚𝐥 𝐎𝐩𝐞𝐫𝐚𝐭𝐢𝐨𝐧𝐚𝐥 𝐑𝐞𝐬𝐢𝐥𝐢𝐞𝐧𝐜𝐞 𝐀𝐜𝐭 (𝐃𝐎𝐑𝐀) The Digital Operational Resilience Act (DORA) is an EU regulation focused on strengthening the ICT (information and communication technology) security of financial institutions to bolster resilience across the European financial sector. It entered effect on January 16, 2023, with enforcement starting on January 17, 2025. 𝐆𝐨𝐚𝐥: DORA creates a comprehensive ICT risk management framework for the EU financial sector. Banks, insurance companies, and investment firms must implement measures to identify, assess, and mitigate ICT risks. 𝐇𝐚𝐫𝐦𝐨𝐧𝐢𝐳𝐚𝐭𝐢𝐨𝐧: DORA replaces varied regulations across EU member states with a uniform set of rules, ensuring consistent ICT security standards. 𝐒𝐜𝐨𝐩𝐞: DORA applies to numerous financial entities and critical third-party service providers (like cloud platforms and data analytics providers) that offer ICT-related services. 𝐊𝐞𝐲 𝐑𝐞𝐪𝐮𝐢𝐫𝐞𝐦𝐞𝐧𝐭𝐬: 𝐈𝐂𝐓 𝐑𝐢𝐬𝐤 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭 𝐅𝐫𝐚𝐦𝐞𝐰𝐨𝐫𝐤: Institutions must establish a framework to pinpoint and manage potential ICT threats. 𝐈𝐂𝐓 𝐓𝐡𝐢𝐫𝐝-𝐏𝐚𝐫𝐭𝐲 𝐑𝐢𝐬𝐤 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭: Assess and manage risks associated with third-party ICT vendors. 𝐃𝐢𝐠𝐢𝐭𝐚𝐥 𝐎𝐩𝐞𝐫𝐚𝐭𝐢𝐨𝐧𝐚𝐥 𝐑𝐞𝐬𝐢𝐥𝐢𝐞𝐧𝐜𝐞 𝐓𝐞𝐬𝐭𝐢𝐧𝐠: Regular testing to ensure preparedness for ICT disruptions. 𝐈𝐂𝐓-𝐑𝐞𝐥𝐚𝐭𝐞𝐝 𝐈𝐧𝐜𝐢𝐝𝐞𝐧𝐭 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭: Institutions need a plan for reporting and handling ICT-related incidents. 𝐒𝐮𝐩𝐞𝐫𝐯𝐢𝐬𝐨𝐫𝐲 𝐎𝐯𝐞𝐫𝐬𝐢𝐠𝐡𝐭: Authorities in EU member states will oversee implementation and enforcement. 𝐈𝐦𝐩𝐚𝐜𝐭: DORA aims to significantly enhance the cybersecurity of the European financial sector, promoting greater resilience against digital threats and safeguarding consumers and the financial system. Thank You PECB, Thank You 🔐 Peter GEELEN. Community, as usual, look out for my PECB Digital Operational Resilience Act (DORA) Lead Manager Certificate!!!

Andrey Prozorov

CISM, CIPP/E, CDPSE, LA 27001 | Advisor and Mentor | I create toolkits for cybersecurity and privacy professionals to meet compliance requirements (ISO 27001, NIS2, EU DORA, NIST CSF, GDPR, ISO 27701)

7mo

It's too early to get certified according to DORA. The primary technical standards have not yet been approved...

Congratulations on your Attestation of course completion!

Eugene McPobee

BSc | Banking | Technology Procurement | Supply Chain | Logistics | IT Procurement Specialist /SAP S/4HANA/ SAP Fiori/ SAP Ariba | AGIPS-Chartered | ISO 9001:2015| Prompt Engineering |Fleet Management |Entrepreneur

7mo

Oga you dey inspire o

Racheal Popoola

Cybersecurity Instructor | Programs Coordinator| Security Awareness Coach| x2 AWS Certified | Certified in Cybersecurity | Cyber Content Writer | Simplifying Cyber Concepts for everyone.

7mo

Congratulations Sir🎉

Abdul-Rashid Mohammed

Computer Networks || OCA || Educ8Africa CyberChamps 18.0 || CEH Candidate || MSc Cyber security and Digital Forensics Student

7mo

Congratulations Emem Umoh. This is awesome.

Ekpedeme Inyang

Cyber Security Engineer @ Coquina Software | Cyber Security GRC| Postgraduate Degree in Cyber Security | ISC2 CC Certified | PMI PMP Certified | Scrum Master Certified | Microsoft MCP

7mo

Congratulations Sir

Evans Owusu-Hammond

CC | MSc DFC| BSc | DBC | CCNA

7mo

Congratulations

See more comments

To view or add a comment, sign in

Explore topics