DORA

Digital Operational Resilience Act · European Parliament / EBA / ESMA / EIOPA (Joint Committee ESAs) · Official site

EU regulation on digital operational resilience for the financial sector, applicable since 17 January 2025. Requires ICT risk management, incident reporting, resilience testing, and third-party risk oversight for banks, insurers, and investment firms.

Timeline

EBA E-mail alert 9 September, 2026 Other eu

EBA e-mail alert referencing an EBA response to the European Commission's non-adoption of draft amending technical standards on prior permission.

Source

EBA E-mail alert 6 August, 2026 Guidance eu

EBA email alert announcing publication of ESG risk dashboard showing stable climate risk exposures and continued improvements in data quality. The alert references a related press release but does no…

Source

EBA E-mail alert 24 July, 2026 Guidance eu

EBA published an e-mail alert announcing feedback sought on draft technical package 4.4 of its reporting and disclosure framework, and finalized Q&As on DORA scope and reporting (DORA272, DORA282).

Source

EBA E-mail alert 23 July, 2026 Guidance eu

EBA email alert containing multiple consultations and press releases on banking topics, including a press release on rules to improve depositor protection under the revised Deposit Guarantee Schemes …

Source Action required

Sources we monitor