• Highlights
    New FSC® Forest Management Accreditation Strengthens Commitment to Sustainability Forest certification is one of the key pillars in ensuring the preservation of forests and the sustainability of the supply chain for forest-based products. With this commitment, we have just obtained the FSC® Forest Management (FM) accreditation (FSC® A000537), expanding our FSC®…
23 May 2025

Preparing for DORA: The Role of Management Systems and International Standards

Preparing for DORA: The Role of Management Systems and International Standards

Preparing for DORA: Management Systems for Digital Resilience

The Regulation (EU) 2022/2554, known as DORA (Digital Operational Resilience Act), will come into force in 2025. It introduces new requirements for financial entities across Europe to strengthen their operational resilience against ICT-related disruptions that could impact critical systems and services.

DORA aims to ensure that financial organisations can anticipate, withstand, respond to, and recover from cyber incidents and operational failures that threaten their technological infrastructure.

Key pillars of DORA:

  • Proactive management of ICT risks
  • Timely notification of major incidents
  • Rigorous testing of operational resilience
  • Oversight of third-party ICT service providers
  • Information-sharing mechanisms across financial entities

Implementing these measures effectively is not just a compliance exercise — it lays the foundation for a culture of security, trust, and sustained digital resilience.

The role of international standards

One of the most effective ways to meet DORA’s requirements is by adopting internationally recognised frameworks such as ISO/IEC 27001, which defines the structure for an Information Security Management System (ISMS). This standard supports ICT risk control, protection of critical assets, incident response, and business continuity — all aligned with DORA's core principles.

Depending on the organisation’s technological landscape and risk exposure, other complementary standards may be relevant:

Together, these frameworks enhance operational resilience and provide regulators with clear evidence of a proactive approach to security, compliance, and continuous improvement.

If your organization is looking to strengthen its digital resilience and align with DORA, we’re here to help identify and implement the most suitable solutions.

Read more

Our integrated services

Learn more about our certification, audit and training services.

link
Supply Chain Audits
APCER Avaliacao de fornecedores
link
Compliance
APCER compliance
link
ESG & Sustainability Consulting
APCER ESG 2
link
Forestry Sector
APCER forest
link
Training
APCER formacao
link
Food Safety
APCER seg alimentar
link
Information Security
APCER segurança info
link
Management Systems, Products and Services
APCER serviços sistemas

Find out how we can help

APCER - Confiança
Newsletter APCER

Stay up-to-date with the latest news