DORA (the Digital Operational Resilience ACT) is an EU regulation that came into effect on January 17, 2025 to safeguard and ensure business continuity for financial institutions and MiCA-licensed Crypto Asset Service Providers (CASPs). It sets out requirements around risk management and incident reporting that these institutions must adhere to when contracting with third-parties that support critical or important functions.
The requirements set out processes for how these institutions conduct due diligence, assess performance, conduct audits, verify quality standards and more on third-parties.
For a more detailed understanding of your obligations, read our Navigating DORA Compliance for Third-Party ICT Vendors: A CISO’s Guide with Fireblocks executive guide.