DORA
DORA Article Navigator
Vollständige Übersicht aller 54 DORA-Artikel mit Coverage-Status, verknüpften Routen und Sollmaßnahmen.
Hinweis: Die Coverage-Bewertung zeigt, welche Artikel durch Inhalte, Tools oder Maßnahmen auf der Resilience Platform abgedeckt sind.
55 Artikel · 8 Titel
Vollständig
Teilweise
Minimal
Title I
4 Artikel (Art. 1–4)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 1 | Subject matter, scope and definitions | — | → dora.overview → dora.regulated-activities | |
| 2 | Definitions | — | → dora.glossar | |
| 3 | Scope — Financial entities | — | → dora.regulated-activities | |
| 4 | Scope — Exemptions | — | → dora.regulated-activities |
Title II
13 Artikel (Art. 5–16)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 5 | Governance and organisation | GOV-01 bis GOV-04 | → dora.ict-risk-management → dora.ict-policies | |
| 6 | ICT risk management framework | IRM-01 bis IRM-04 | → dora.ict-risk-management | |
| 7 | Identification | IRM-05 bis IRM-08 | → dora.ict-risk-management → dora.critical-functions | |
| 8 | Protection and prevention | PDR-01 bis PDR-04 | → dora.ict-risk-management → dora.protection-assessment | |
| 9 | Protection and prevention | PDR-01 bis PDR-04 | → dora.ict-risk-management → dora.protection-assessment | |
| 10 | Detection | PDR-02 | → dora.ict-risk-management → produkte.dora-detection-capability-workspace | |
| 11 | Response and recovery | PDR-03, PDR-04 | → dora.ict-risk-management → playbooks.index | |
| 11 | Business continuity management | IRM-09 bis IRM-12 | → bcm.index | |
| 12 | Backup and restoration | IRM-13, IRM-14 | → bcm.index | |
| 13 | ICT assets, processes and dependencies | REG-01 bis REG-04 | → dora.information-register | |
| 14 | ICT risk management reporting | GOV-03 | → dora.ict-risk-management | |
| 15 | ICT risk management documentation | GOV-04 | → dora.documentation-requirements | |
| 16 | ICT risk management review | — | → dora.maturity |
Title III
7 Artikel (Art. 17–23)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 17 | ICT incident classification | INC-01, INC-02 | → dora.ict-incidents → dora.incident-reporting-wizard → dora.ict-incidents-db | |
| 18 | Major ICT incident reporting | INC-03 | → dora.ict-incidents → dora.incident-reporting-wizard → dora.notification-obligations | |
| 19 | Voluntary notification | — | → dora.incident-reporting-wizard → dora.notification-obligations | |
| 20 | Coordination of incident reporting | — | → dora.ict-incidents → dora.incident-reporting-wizard | |
| 21 | Central contact point | — | → dora.central-contact-point → dora.incident-reporting-wizard → dora.ict-incidents-db | |
| 22 | Incident response documentation | INC-04 | → dora.incident-reporting-wizard → dora.documentation-requirements | |
| 23 | Incident response review | — | → dora.incident-reporting-wizard → dora.maturity |
Title IV
4 Artikel (Art. 24–27)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 24 | Digital operational resilience testing programme | TST-01 bis TST-04 | → dora.resilience-testing → dora.testing-cockpit → dora.testprogramm | |
| 25 | Testing of ICT tools and systems | TST-05 | → dora.resilience-testing → dora.test-types | |
| 26 | TLPT — Threat-Led Penetration Testing | TST-06 | → dora.tlpt | |
| 27 | TLPT — Testing requirements | — | → dora.tlpt |
Title V
3 Artikel (Art. 28–30)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 28 | ICT third-party risk management | TPR-01 bis TPR-05 | → dora.ict-third-party-risk → dora.information-register | |
| 29 | Key contractual provisions | CON-01 bis CON-06 | → dora.ict-contracts | |
| 30 | Critical ICT third-party providers | KWF-01 bis KWF-06, TPR-CTPP-01 | → dora.critical-ict-third-party-providers → dora.critical-functions |
Title VI
3 Artikel (Art. 31–33)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 31 | Information sharing arrangements | — | → dora.information-sharing | |
| 32 | Information sharing — Operational | — | → dora.information-sharing | |
| 33 | Information sharing — Data protection | — | → dora.information-sharing |
Title VII
9 Artikel (Art. 34–42)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 34 | Designation of critical ICT third-party providers | — | → dora.critical-ict-third-party-providers → dora.ctpp-oversight | |
| 35 | Oversight framework | — | → dora.ctpp-oversight | |
| 36 | Oversight powers of the Lead Overseer | — | → dora.ctpp-oversight | |
| 37 | Cooperation between ESAs and competent authorities | — | → dora.title-viii | |
| 38 | Investigative powers | — | → dora.ctpp-oversight | |
| 39 | On-site inspections | — | → dora.ctpp-oversight | |
| 40 | Hearings | — | → dora.title-viii | |
| 41 | Regular oversight fees | — | → dora.title-viii | |
| 42 | Enforcement of oversight measures | — | → dora.ctpp-oversight → dora.title-viii |
Title VIII
12 Artikel (Art. 43–54)
| Art. | Bezeichnung | Coverage | Maßnahmen | Verknüpfte Seiten |
|---|---|---|---|---|
| 43 | Competent authorities | — | → dora.title-viii | |
| 44 | Professional secrecy | — | → dora.title-viii | |
| 45 | Administrative sanctions | — | → dora.title-viii | |
| 46 | Penalties for natural persons | — | → dora.title-viii | |
| 47 | Reporting of infringements | — | → dora.title-viii | |
| 48 | Exercise of delegation | — | → dora.title-viii | |
| 49 | Implementation and review | — | → dora.timeline → dora.title-viii | |
| 50 | ESAs review and report | — | → dora.title-viii | |
| 51 | Transitional provisions | — | → dora.timeline → dora.title-viii | |
| 52 | Amendments to regulations | — | → dora.title-viii | |
| 53 | Entry into force | — | → dora.timeline → dora.title-viii | |
| 54 | Addresses | — | → dora.title-viii |
Coverage-Zusammenfassung
25
Vollständig
25
Teilweise
5
Minimal