DORA (Digital Operational Resilience Act) applies to financial entities and their ICT third-party providers in the EU, ensuring digital operational resilience.
Enforcement authority
Maximum sanctions
Penalties determined by national competent authorities. Critical ICT providers face fines up to 1% of daily worldwide turnover.
Obligations
What DORA requires from organizations operating in Brazil.
Local context
DORA applies from January 17, 2025. Financial entities must ensure full compliance with ICT risk management requirements.
DORA (Digital Operational Resilience Act) applies to financial entities and their ICT third-party providers in the EU, ensuring digital operational resilience.
National financial supervisory authorities + ESAs (EBA, ESMA, EIOPA)
Penalties determined by national competent authorities. Critical ICT providers face fines up to 1% of daily worldwide turnover.
See your risk score and applicable obligations in action.