What the DORA regulation changes in practice
The European Digital Operational Resilience Act (DORA) requires financial entities and their critical ICT providers to manage digital risk in a structured way: mapping, incident management, resilience testing and oversight of third-party providers. These obligations are not limited to technical teams: they involve the whole organisation.
A programme designed for non-technical teams
- Understanding the DORA stakes: what the regulation changes, without technical jargon or IT prerequisites.
- Incidents & critical providers: recognising an incident and understanding the role of critical ICT providers in the resilience chain.
- Good reporting reflexes: knowing when and how to escalate an incident, to whom, and why timing matters.
Cybersecurity fundamentals (phishing, passwords, sensitive data) and data protection are built into the programme rather than treated as separate trainings.
Who it is for
This programme is for banks, insurers, fintechs and asset managers: business teams, managers, HR and L&D functions, with no technical prerequisite.
A complementary second programme: AI Literacy & Responsible Use
DORA Awareness combines naturally with our second programme, AI Literacy & Responsible Use, dedicated to the responsible use of AI. Both address the same decision-makers (Risk, Compliance, HR and L&D) and can be organised for the same organisation.