Legal News

EBA amends ICT and security risk management Guidelines in preparation for DORA implementation

Published on: 11 February 2025
Published by LNB News

LNB News 11/02/2025

Document Information

Issue Date: 11 February 2025

Published Date: 11 February 2025

Jurisdiction(s): Eire and European Union

Article summary

The European Banking Authority (EBA) has published a final report on the amendment of its Guidelines on ICT and security risk management measures due to the application of the Digital Operational Resilience Act (DORA) from 17 January 2025. These amendments aim to simplify the ICT risk management framework and provide legal clarity to the market. DORA introduces harmonised ICT risk management requirements for financial entities across various sectors. The EBA has narrowed the scope of its Guidelines to entities covered by DORA and specific requirements for managing relationships with payment services. The amended Guidelines will apply within two months of the publication of the translated versions.

Popular documents