Course : DORA (Digital Operational Resilience Act), implementing a digital resilience strategy

Seminar - 2d - 14h00 - Ref. DRA
Price : 1810 € E.T.

DORA (Digital Operational Resilience Act), implementing a digital resilience strategy




The DORA standard is a European regulatory framework designed to strengthen the operational resilience of financial entities in the face of IT and cybersecurity risks. It imposes strict requirements in terms of IT risk management, cybersecurity testing, incident management and critical infrastructure resilience. By harmonizing standards across the EU, DORA ensures greater protection against cyber threats, limiting disruptions to financial services and strengthening digital confidence.


INTER
IN-HOUSE
CUSTOM

In person or remote class
Available in English on request

Ref. DRA
  2d - 14h00
1810 € E.T.




The DORA standard is a European regulatory framework designed to strengthen the operational resilience of financial entities in the face of IT and cybersecurity risks. It imposes strict requirements in terms of IT risk management, cybersecurity testing, incident management and critical infrastructure resilience. By harmonizing standards across the EU, DORA ensures greater protection against cyber threats, limiting disruptions to financial services and strengthening digital confidence.


Teaching objectives
At the end of the training, the participant will be able to:
Understand the main objectives and key concepts of the DORA regulation
Understanding the different types of cyber risks
Identify data security and regulatory compliance obligations
Learn about digital security best practices and raise employee awareness
Setting up and implementing a digital resilience strategy

Intended audience
CISOs and security advisors, security architects, IT directors and managers, IT engineers, project managers (MOE, MOA), security auditors and IT regulatory lawyers.

Prerequisites
Basic knowledge of cybersecurity and information systems security.

Course schedule

1
Information and communication technology (ICT) risk management

  • DORA provisions reminding us of the need to implement an ICT risk management system.
  • Key principles and requirements for financial entity risk management.
  • Obligations relating to the ICT risk management framework.

2
Management, classification and reporting of ICT incidents

  • Provisions of the DORA regulation aimed at harmonizing and streamlining the reporting of ICT incidents.
  • Classification and reporting of ICT incidents.
  • Notification of major ICT incidents to the competent ESA (European Supervisory Authorities).
  • Voluntary notification of major cyber threats to authorities such as EBA, EIOPA and ESMA.

3
Digital operational resilience testing

  • Digital operational resilience tests on the most critical parts of their information systems.
  • Advanced testing based on Threat-Led Penetration Testing (TLPT).
  • Large-scale live threat testing by independent testing organizations.

4
Managing risks related to third-party service providers

  • Third-party risk management principles for ICT risk management.
  • Provisions to be taken into account when dealing with third-party service providers supplying ICT services.
  • Europe-wide monitoring framework for critical third-party ICT service providers.

5
Information exchange provisions

  • Strengthen the digital operational resilience of financial entities.
  • Voluntary exchange of information and intelligence on cyber threats between different financial entities.


Customer reviews
4,1 / 5
Customer reviews are based on end-of-course evaluations. The score is calculated from all evaluations within the past year. Only reviews with a textual comment are displayed.
CELINE L.
17/03/26
4 / 5

Formation dense mais qui a bien été abordé par le formateur en ciblant les points essentiels
EMMANUELLE R.
17/03/26
4 / 5

c’était bien mais j’aurais aimé passer plus de temps sur Dora (ce qui a été fait surtout le 2e jour).
STÉPHANE M.
17/03/26
4 / 5

formateur compétent



Publication date : 10/14/2024


Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class

Last places available
Guaranteed date, in person or remotely
Guaranteed session

REMOTE CLASS
2026 : 28 May, 13 Oct., 26 Nov.

PARIS LA DÉFENSE
2026 : 21 May, 6 Oct., 19 Nov.