The Digital Operational Resilience Act (DORA) is a European Union regulation (Regulation (EU) 2022/2554) that was adopted in December 2022. It creates a unified framework for digital risk management in the financial sector. DORA applies directly to both financial entities and critical third-party ICT service providers.
The regulation aims to ensure that all entities in the
banking, insurance, investment, payments, crypto, and fintech sectors can withstand, respond to, and recover from ICT-related disruptions and cyber threats. It bridges gaps in existing cybersecurity rules across EU member states by enforcing consistent obligations.