Guides
DORA readiness guides
Short, practical pages for ICT risk and engineering teams preparing a Digital Operational Resilience Act (DORA) conversation. Indicative only — not legal advice.
What is the Digital Operational Resilience Act (DORA)?
Plain-language overview of the EU Digital Operational Resilience Act (DORA): who it covers, why ICT resilience matters, and how to start a readiness conversation — without treating this as legal advice.
What are the five DORA pillars teams organise around?
A practical overview of the five DORA-aligned pillars used in our readiness framing: ICT risk management, incident handling, resilience testing, third-party risk, and information sharing.
What belongs on a DORA readiness checklist?
A practical DORA readiness checklist for CTOs and compliance leads: ownership, incidents, testing, third parties, and evidence — plus a free self-assessment to score your starting point.
When is a DORA self-assessment enough vs an audit?
How an indicative DORA readiness self-assessment differs from a formal audit or legal review — and when each is the right next step.