DORA
Assess your compliance with the Digital Operational Resilience Act (DORA).
Presentation
The Digital Operational Resilience Act (DORA) is a European regulation strengthening the digital operational resilience of the financial sector. It establishes uniform requirements for ICT risk management, incident reporting, resilience testing and third-party risk.
What does DORA require?
- ICT risk management framework: documented and approved by management
- Incident reporting: classification and notification to authorities
- Resilience testing: TLPT (Threat-Led Penetration Testing)
- Third-party risk: oversight of critical ICT service providers
- Information sharing: threat intelligence exchange
Who is affected?
Financial entities (banks, insurers, investment firms, payment institutions) and their critical ICT third-party service providers.
DORA: Self-Assessment
Assess your compliance with DORA — digital operational resilience for the financial sector.
Your organisation's IT security maturity
Free online diagnostic run with G-Echo
Result
Overall maturity level
domains answered
Help / Why this question?
Annex A — Prioritized action plan
This plan prioritizes measures per domain according to the observed maturity level (P1: low maturity, P2: average, P3: good). Efforts are expressed in man-days, for guidance only.
Sovereign & secure cloud: Akilao by SWiiptel
Migrate your infrastructure to SWiiptel's (SWIIPTEL SAS) 100% French cloud platform — 24/7 monitoring, Toulouse ↔ Paris datacenters. Four migration plans accompany the move, with no application rework:
Shared secure foundation: nginx reverse proxy in front, dedicated VPN, managed certificates and ticket-based support.
Discover Akilao offersContact G-Echo
Cybersecurity audit, consulting and expertise (EBIOS Risk Manager, ISO 27001).