This website uses cookies

This website uses cookies to ensure you get the best experience. By using our website, you agree to our Privacy Policy

International In-house Counsel Journal logoInternational In-house Counsel Journal logo
Back to library search

The EU Regulation on Digital Operational Resilience for the Financial Sector: Applicability & Compliance Guidance for ICT Service Providers

February 2025
Compliance

Abstract

The European Union (‘EU’) Regulation on Digital Operational Resilience for the Financial Sector EU 2022/2554 (‘DORA’), the new cybersecurity framework for the entire financial sector of EU along with its extensive Information and Communication Technology (‘ICT’) supply chain systems, has come into effect from January 17, 2025. This article will assess the applicability and impact of the DORA regulations for ICT third-party supply chain vendors (with special emphasis on applicability and compliance for IT vendors and cloud service providers) of EU based financial institutions. It will specifically cover the following key areas: a. Applicability of DORA to third party ICT third party services providers (including IT vendors and cloud service providers) of the financial sector; b. Key compliances under DORA for ICT third party service providers; c. Steps for translating DORA requirements into enforceable contractual requirements for ICT third party service providers; d. Risks/penalties for non-compliance; and e. Recent regulatory developments related to DORA compliance.

PLS LogoCopyright & permissions

Author

Portrait image of Subhrarag Mukherjee
Subhrarag Mukherjee
Senior Legal Counsel – Strategic Alliances & OEM (North America & Worldwide), Hewlett Packard Enterprise, India

I am a Senior Legal Counsel in Hewlett Packard Enterprise (HPE) overseeing the legal support for the 'Strategic Alliance' and 'OEM' business groups for North America & Worldwide regions.

Company

Hewlett Packard Enterprise

Hewlett Packard Enterprise is an Information Technology MNC focussed on providing various kinds of IT hardware and software products and system integration services to its enterprise clients across the world.

Related Papers

Implementing Effective Compliance Programs in Jurisdictions Where the Rule of Law is Weak
Multinational organizations increasingly operate in jurisdictions where the rule of law is weak, inconsistently enforced, or subject to political and economic influence. For pharmaceutical and biotechnology companies, these environments present...Read more
Portrait image of Fabiana Lacerca-Allen
Fabiana Lacerca-Allen
Chief Compliance Officer, Cipla, USA
Portrait image of Valentina Lacerca-Allen
Valentina Lacerca-Allen
Title Marketing/ Communication Specialist, Ethiprax LLC., USA
Implementing Effective Compliance Programs in Jurisdictions Where the Rule of Law is Weak
Multinational organizations increasingly operate in jurisdictions where the rule of law is weak, inconsistently enforced, or subject to political and economic influence. For pharmaceutical and biotechnology companies, these environments present...Read more
Portrait image of Fabiana Lacerca-Allen
Fabiana Lacerca-Allen
Chief Compliance Officer, Cipla, USA
Portrait image of Valentina Lacerca-Allen
Valentina Lacerca-Allen
Title Marketing/ Communication Specialist, Ethiprax LLC., USA
Corporate Compliance in a Fragmented Regulatory Landscape
As multinational companies expand into diverse and rapidly evolving markets, legal and compliance teams face increasing pressure to navigate fragmented regulatory frameworks while upholding consistent global standards. This paper draws...Read more
Portrait image of Moutaz Abdullat
Moutaz Abdullat
General Counsel, Fererro , UAE
Sustainability, Diversity, Equity, Inclusion and Compliance between European standards and global counter-narrative
The Role (and Ethics) of General Counsels: Guardians of Justice and Values In an era of increasing regulatory pressure, the European Union's Corporate Sustainability Reporting Directive (CSRD) is a key step...Read more
Portrait image of Alfonso Levote
Alfonso Levote
General Counsel & Investor Relations, Rosetti Marino S.p.A., Italy