Tag: dora
-
DORA Compliance in 2026: What Article 9 Requires at the Database Layer
DORA enforcement is live in 2026. See what Article 9’s ICT change management mandate means for database teams, and how to close the compliance gap. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/dora-compliance-in-2026-what-article-9-requires-at-the-database-layer/
-
DORA Compliance in 2026: What Article 9 Requires at the Database Layer
DORA enforcement is live in 2026. See what Article 9’s ICT change management mandate means for database teams, and how to close the compliance gap. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/dora-compliance-in-2026-what-article-9-requires-at-the-database-layer-2/
-
Unternehmen sollten DORA-Erfahrungen für sich nutzen
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/nis-2-unternehmen-dora-erfahrungen-nutzen
-
NIS2 und DORA als Treiber für Security Operations – IT-Sicherheit scheitert ohne Struktur
First seen on security-insider.de Jump to article: www.security-insider.de/nis2-dora-siem-soc-it-sicherheitsstruktur-a-f7a94f11040e6a9fd08f8ae0e643a891/
-
DORA und die Grenzen formaler Compliance: Digitale Resilienz ist eine Architekturfrage
Management Summary Formale Compliance schafft keine Sicherheit: DORA definiert einen verbindlichen Rahmen, doch echte digitale Resilienz entsteht erst, wenn Governance, Technologie und Betrieb architektonisch verzahnt sind Checklisten allein reichen nicht. Komplexe, historisch gewachsene IT”‘Landschaften erhöhen das Risiko: Fragmentierte Zertifikate, dezentrale Schlüsselverwaltung und inkonsistente Identity”‘Konzepte erschweren operative Steuerbarkeit und machen Institute anfällig für Angriffe. Identitäten… First…
-
Was die Straße von Hormus über moderne Identity Security lehrt Das digitale Nadelöhr
Unternehmen unterschätzen das Risiko der digitalen Identitäten. KI-Identitäten greifen bereits auf Kernsysteme zu, jedoch hat nur ein Bruchteil der Organisationen klare Richtlinien, Kontrolle und Lifecycle Management dafür implementiert. Während Regulierungen wie NIS2, DORA und der EU AI Act strengere Nachvollziehbarkeit und Verantwortlichkeit fordern, bleibt die dringende Aufgabe, Identitäten transparent zu machen, Zugriffe in Echtzeit zu steuern…
-
Omada Identity Sovereign: Neue IGA-Lösung für digitale Souveränität, DORA, NIS2 und regulierte Unternehmen
Mit Omada Identity Sovereign können Organisationen ihre Identity Governance auf einer selbst gewählten Infrastruktur bereitstellen und betreiben. Dazu zählen eigene Rechenzentren… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/omada-identity-sovereign-neue-iga-loesung-fuer-digitale-souveraenitaet-dora-nis2-und-regulierte-unternehmen/a45591/
-
Cybersicherheit und Compliance Warum Excel und Word zum Haftungsrisiko werden
Viele Unternehmen setzen bei der Umsetzung von NIS2 und DORA zunächst auf Excel und Word aus Gewohnheit, Kostengründen oder Pragmatismus. Für eine dauerhafte, revisionssichere Steuerung von Cyberrisiken reichen statische Office-Dokumente jedoch nicht aus. Warum das schnell zum Haftungsrisiko werden kann, zeigen fünf zentrale Schwachstellen im Umgang mit regulatorischen Anforderungen. First seen on ap-verlag.de Jump to…
-
DORA als Modernisierungstreiber für Banken und Versicherungen – Digitale Resilienz braucht Architektur, nicht nur DORA-Compliance
First seen on security-insider.de Jump to article: www.security-insider.de/dora-compliance-sicherheitsarchitektur-finanzsektor-a-469e0576193cb06b98fc94c4879d9a28/
-
Interview mit Hiscout Warum scheitern viele Unternehmen an der Umsetzung von NIS2 und DORA?
NIS2 und DORA gelten als Pflichtprogramm doch warum scheitern so viele Unternehmen trotzdem an der Umsetzung? Im Interview erläutert Silke Menzel, Consultant bei Hiscout, warum nicht die Technik, sondern oft Prozesse, fehlende Transparenz und isolierte Risikobetrachtungen zum Problem werden. Außerdem belegt sie, weshalb Excel und Word bei moderner Compliance an ihre Grenzen stoßen, wie […]…
-
Digitale Souveränität ist mehr als eine Standort-Frage
Daten in Europa zu speichern macht Unternehmen noch lange nicht digital souverän. Im Gespräch mit Netzpalaver erläutert Pantelis Astenburg, Vice President of Sales DACH bei Versa, warum echte digitale Souveränität weit über den Speicherort von Daten hinausgeht, welche Rolle SASE-Architekturen für Sicherheit und Compliance spielen und weshalb Unternehmen angesichts von NIS2, DORA und geopolitischen Risiken…
-
Navigating SEC, NIS2, and DORA incident disclosure timelines under pressure
In this Help Net Security video, Rick Goud, Global Field CTO at Kiteworks, discusses how to handle SEC, NIS2, and DORA disclosure timelines during a security incident. He … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/17/incident-disclosure-timelines-video/
-
Identity Governance und KI-Agenten: Interview mit Dr. Heiko Klarl, CEO von Nexis
In dem Interview erläutert Dr. Klarl, warum Identity Governance angesichts des wachsenden Drucks durch KI-Agenten, DORA und NIS2 grundlegend überdacht werden muss. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/identity-governance-und-ki-agenten-interview-mit-dr-heiko-klarl-ceo-von-nexis/a45358/
-
EU organizations buckle under rising compliance pressure
Cybersecurity governance in the EU is shifting under expanding frameworks such as NIS2 and DORA, while AI raises new questions for security teams. What the future brings is … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/01/antonija-vojnovic-span-cybersecurity-governance-challenges/
-
Wie KI und Mythos die Lage um die DSGVO, NIS2 und DORA verschärfen
Acht Jahre nach Einführung der DSGVO und angesichts neu hinzugekommener Regularien zur Cyberresilienz wie NIS2 oder DORA stehen Datensicherung und damit Datenschutz erneut vor neuen Anforderungen. KI-Modelle wie Anthropics Mythos werden zu einem drastischen Anstieg von Datenschutzvorfällen führen. Es ist wichtig, dass Unternehmen, Organisationen oder Behörden mehr tun, um die Folgen von Sicherheitsvorfällen besser und effizienter…
-
10 wichtige CloudTools für Unternehmenssicherheit und Audit-Bereitschaft
Cloud-Compliance im Jahr 2026 ist weit mehr ist als die Vorbereitung auf Audits: In hybriden und Multi-Cloud-Umgebungen wird sie zum zentralen Maßstab für operative Resilienz, Risikotransparenz und regulatorische Sicherheit. Unternehmen stehen unter wachsendem Druck, Anforderungen aus Frameworks wie NIST, ISO27001, SOC2, PC DSS, HIPAA, DSGVO, NIS2 und DORA kontinuierlich nachzuweisen und zwar in Echtzeit […]…
-
Ten years later, has the GDPR fulfilled its purpose?
Tags: access, ai, breach, business, china, cio, compliance, data, data-breach, dora, finance, flaw, framework, GDPR, governance, government, international, jobs, law, mobile, office, privacy, regulation, risk, service, technology, tool, trainingFernando Maldonado, technology advisor at Foundry. MuleSoft. Gray areas remain: Still, if anything has been demonstrated in the decade since its entry into force, it’s that the GDPR still has a long way to go.Miguel Recio, president of APEP.IA (Spanish Professional Association for Privacy), argues that some of the limitations that have been exposed about the…
-
DORA and the Practical Test of Operational Resilience
By Alan Stewart-Brown, VP EMEA, Opengear Disruption in financial services rarely follows a clean script. A misconfiguration, a spike in malicious traffic, or a poorly timed change can cascade across platforms and teams, particularly where systems and suppliers are tightly coupled. When that chain reaction starts, the challenge is rarely identifying the fault. It The…
-
DORA and the Practical Test of Operational Resilience
By Alan Stewart-Brown, VP EMEA, Opengear Disruption in financial services rarely follows a clean script. A misconfiguration, a spike in malicious traffic, or a poorly timed change can cascade across platforms and teams, particularly where systems and suppliers are tightly coupled. When that chain reaction starts, the challenge is rarely identifying the fault. It The…
-
DORA and operational resilience: Credential management as a financial risk control
Tags: access, authentication, breach, control, credentials, dora, finance, regulation, resilience, riskArticle 9 of DORA makes authentication and access control a legal obligation for EU financial entities. Here is what the regulation requires, and what a breach looks like when those controls are missing. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/dora-and-operational-resilience-credential-management-as-a-financial-risk-control/
-
When Mythos Finds Thousands of Zero-Days, EU Regulators Won’t Wait for Your SOC to Catch Up
Can your SOC triage thousands of Mythos findings in 24 hours? NIS2, CRA, and DORA are all waiting. Miss one clock and the penalties begin. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/04/when-mythos-finds-thousands-of-zero-days-eu-regulators-wont-wait-for-your-soc-to-catch-up/
-
DORA in der Praxis – Wie die isländische RB Bank ihre Backup- und Security-Architektur modernisiert
First seen on security-insider.de Jump to article: www.security-insider.de/wie-die-islaendische-rb-bank-ihre-backup-und-security-architektur-modernisiert-a-946af1e02f2ef1ad19c7674cf16e1764/
-
Von formaler Compliance zu echter Cybersicherheit im Finanzsektor
Warum DORA auch eine Architekturfrage ist und was das für Banken und Versicherungen bedeutet. Die Anforderungen an die digitale Widerstandsfähigkeit von Banken und Versicherungen steigen. Mit dem Digital Operational Resilience Act (DORA) hat die Europäische Union einen verbindlichen Rahmen geschaffen, um IT-Risiken, Cyberangriffe und Abhängigkeiten von Drittdienstleistern zu adressieren. Doch regulatorische Konformität schafft… First…
-
6 key trends reshaping the IAM market
Tags: access, ai, attack, authentication, ciso, compliance, corporate, cyber, cybersecurity, data, dora, finance, framework, governance, government, Hardware, iam, identity, mfa, mobile, network, nis-2, passkey, password, PCI, phone, regulation, saas, service, startup, strategy, technologyPasswordless authentication on the rise: Passwords have long been the weakest link in most security architectures.Many mobile phones and laptops already use biometrics for authentication, and the user experience is typically far better than typing a long and complex password into an interface.The growing uptake of passwordless authentication (FIDO2/passkeys, biometrics) is redefining the scope of…
-
6 key trends reshaping the IAM market
Tags: access, ai, attack, authentication, ciso, compliance, corporate, cyber, cybersecurity, data, dora, finance, framework, governance, government, Hardware, iam, identity, mfa, mobile, network, nis-2, passkey, password, PCI, phone, regulation, saas, service, startup, strategy, technologyPasswordless authentication on the rise: Passwords have long been the weakest link in most security architectures.Many mobile phones and laptops already use biometrics for authentication, and the user experience is typically far better than typing a long and complex password into an interface.The growing uptake of passwordless authentication (FIDO2/passkeys, biometrics) is redefining the scope of…
-
6 key trends reshaping the IAM market
Tags: access, ai, attack, authentication, ciso, compliance, corporate, cyber, cybersecurity, data, dora, finance, framework, governance, government, Hardware, iam, identity, mfa, mobile, network, nis-2, passkey, password, PCI, phone, regulation, saas, service, startup, strategy, technologyPasswordless authentication on the rise: Passwords have long been the weakest link in most security architectures.Many mobile phones and laptops already use biometrics for authentication, and the user experience is typically far better than typing a long and complex password into an interface.The growing uptake of passwordless authentication (FIDO2/passkeys, biometrics) is redefining the scope of…
-
6 key trends reshaping the IAM market
Tags: access, ai, attack, authentication, ciso, compliance, corporate, cyber, cybersecurity, data, dora, finance, framework, governance, government, Hardware, iam, identity, mfa, mobile, network, nis-2, passkey, password, PCI, phone, regulation, saas, service, startup, strategy, technologyPasswordless authentication on the rise: Passwords have long been the weakest link in most security architectures.Many mobile phones and laptops already use biometrics for authentication, and the user experience is typically far better than typing a long and complex password into an interface.The growing uptake of passwordless authentication (FIDO2/passkeys, biometrics) is redefining the scope of…
-
How EU Regulations Are Reshaping SOC Operations
NIS2, DORA, and the AI Act are rewriting the rulebook for Security Operations Centers. Here’s what you need to know and do. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/03/how-eu-regulations-are-reshaping-soc-operations/
-
How EU Regulations Are Reshaping SOC Operations
NIS2, DORA, and the AI Act are rewriting the rulebook for Security Operations Centers. Here’s what you need to know and do. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/03/how-eu-regulations-are-reshaping-soc-operations-2/
-
Should Cloud Be Classed as Critical Infrastructure?
Tags: access, authentication, banking, breach, business, cloud, compliance, computing, container, control, cyber, cybersecurity, data, dora, encryption, fido, finance, framework, governance, Hardware, healthcare, identity, incident, infrastructure, mfa, network, nis-2, radius, regulation, resilience, risk, saas, service, strategy, supply-chain, technologyShould Cloud Be Classed as Critical Infrastructure? madhav Thu, 03/05/2026 – 09:53 Over the past few years, large-scale cloud outages have demonstrated just how deeply digital services are woven into the fabric of modern society. When widely used cloud platforms experience disruption, the impact extends far beyond individual applications; banking services stall, transport systems falter,…

