Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
DORA

DORA Regulation Updates

Real-time tracking of changes to the Digital Operational Resilience Act. Stay informed about ICT risk management requirements, incident reporting obligations, and third-party provider oversight for banks, insurers, and financial market infrastructures.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR
CELEX:32024R2145R(01)
This corrigendum, published on 11 May 2026, corrects technical errors in the original Digital Operational Resilience Act (DORA) Delegated Regulation 2024/2145. The changes are limited to fixing ina...
Read analysis →
CELEX:32024R1348R(03)
This is a corrigendum to the Digital Operational Resilience Act (DORA) Delegated Regulation 2024/1348, published on 6 May 2026. It corrects technical errors in the original text, specifically in An...
Read analysis →
CELEX:32024R2952R(02)
This is a corrigendum to the Digital Operational Resilience Act (DORA), specifically correcting a technical error in the original Regulation 2024/2952. The correction addresses a misalignment in th...
Read analysis →
CELEX:32024R3005R(01)
On 5 May 2026, the European Commission published a corrigendum to the Digital Operational Resilience Act (DORA), formally referenced as CELEX:32024R3005R(01). This correction addresses technical er...
Read analysis →
CELEX:32024R1689R(04)
This is a corrigendum to the Digital Operational Resilience Act (DORA), specifically correcting errors in the original text of Regulation (EU) 2024/1689. The corrections address technical inaccurac...
Read analysis →
CELEX:32024R1834R(03)
This is a corrigendum to the Commission Delegated Regulation (EU) 2024/1834, which supplements the Digital Operational Resilience Act (DORA). Published on 30 April 2026, it corrects technical error...
Read analysis →
CELEX:32024R1745R(10)
This is a corrigendum to the Commission Delegated Regulation (EU) 2024/1745, which supplements the Digital Operational Resilience Act (DORA) regarding ICT risk management. Published on 29 April 202...
Read analysis →
CELEX:32024R1942R(01)
This corrigendum corrects errors in the original text of the Digital Operational Resilience Act (DORA) Delegated Regulation 2024/1942, which specifies criteria for classifying ICT-related incidents...
Read analysis →
CELEX:32024R3190R(03)
This is a corrigendum to the Digital Operational Resilience Act (DORA), published on 20 April 2026. It corrects technical errors in the original 2024 regulation, specifically addressing inconsisten...
Read analysis →
CELEX:32024R2076R(07)
This is a corrigendum, published on 20 April 2026, correcting the original text of Commission Delegated Regulation (EU) 2024/2076, which supplements the Digital Operational Resilience Act (DORA). T...
Read analysis →
DORA – Register of Information collection – Update
The CSSF has published an update regarding the collection of information for the DORA Register. This involves the formal issuance of templates and technical specifications that financial entities m...
Read analysis →
ESMA consults on post-trade risk reduction services under EMIR 3
ESMA has launched a public consultation on proposed technical standards for post-trade risk reduction (PTRR) services under the revised EMIR framework (EMIR 3). This initiative, developed within th...
Read analysis →
ESMA sets out clearing thresholds under EMIR 3
ESMA has published its final report setting the clearing thresholds under the updated EMIR 3 framework, which is part of the broader DORA regulatory initiative. This establishes the quantitative le...
Read analysis →
DORA – Submission timeframe for register of information for third-country branches of credit institutions having thei...
The CSSF has published a communication specifying the submission timeframe for a key DORA requirement. It mandates that third-country branches of credit institutions, whose head office is outside t...
Read analysis →
The EBA publishes follow-up Report on ICT risk assessment under the Supervisory Review and Evaluation Process
The European Banking Authority (EBA) has published a follow-up report on integrating Information and Communication Technology (ICT) risk into the Supervisory Review and Evaluation Process (SREP). T...
Read analysis →