Skip to main content

Regulation (EU) 2022/2554

DORA, whole

The financial sector's own resilience law, written to sit inside NIS2 and to reach past the banks to the technology providers they depend on. The walk runs from governance to third-party oversight.

Assembling the DORA graph...

Every provision of DORA

The whole act as plain links, grouped as it is grouped. Each one opens that provision on its own page, with the official text, what it cites, what cites it and where it reaches another act.

Chapter IGeneral provisions

Chapter IIICT risk management

Chapter IIIICT-related incident management, classification and reporting

Chapter IVDigital operational resilience testing

Chapter VManaging of ICT third-party risk

Chapter VIInformation-sharing arrangements

Chapter VIICompetent authorities

Chapter VIIIDelegated acts

Chapter IXTransitional and final provisions

Defined terms (65)

Recitals (106)

Source texts: the Official Journal, through the Publications Office. Study aid, not legal advice.

DORA 32022R2554

DORA and NIS2 cite each other more than any other pair on this map. Those sentences are at /tools/cross-compliance-graph/crossover.