If your organisation is already certified to ISO 27001, this will provide a strong starting point for compliance with DORA, as the two cover very similar ground.  However, DORA also contains other, much more specific requirements that are not included within ISO 27001, particularly in the areas of incident reporting, resilience testing and third-party risk management.

DORA - The Digital Operations Resilience Act

Published on
17 Sep
2026

URM’s blog discusses the EU’s Digital Operation’s Resilience Act (DORA), explaining who it will apply to, its requirements, how it will be enforced, and more.

Read more
"
Whenever we have asked our QSA and account manager whether additional work is required outside of the annual cycle, there has never been a hard sell of any of URM’s services, and instead offer advice based on our compliance requirements and business needs.
CISO at University of Surrey
contact US

Let us help you

Let us help you in your compliance journey by completing the form and letting us know how we can best support you.