If your organisation is already certified to ISO 27001, this will provide a strong starting point for compliance with DORA, as the two cover very similar ground.  However, DORA also contains other, much more specific requirements that are not included within ISO 27001, particularly in the areas of incident reporting, resilience testing and third-party risk management.

DORA - The Digital Operations Resilience Act

Published on
17 Sep
2026

URM’s blog discusses the EU’s Digital Operation’s Resilience Act (DORA), explaining who it will apply to, its requirements, how it will be enforced, and more.

Read more
"
URM have carried out our PCI DSS assessments for nearly 10 years. During that time they have shown expertise and commitment in helping us reach our goals. Last year we decided to go for Cyber Essentials Plus and had no hesitation in getting URM to assess us for that.
contact US

Let us help you

Let us help you in your compliance journey by completing the form and letting us know how we can best support you.