Italiano: această pagină nu e încă tradusă. Textul de mai jos e în English.
Financial institutions live under a stack of overlapping requirements: EBA guidelines on ICT and security risk, EIOPA requirements for insurance, and DORA across all of them. The real challenge is not knowing each one, but avoiding doing the same work three times and producing evidence that withstands a supervisor’s inspection. We align the institution to the applicable guidelines, once, coherently.
What we cover
- ICT governance and oversight at management level
- ICT risk management and third-party / outsourcing risk — the area most closely inspected in recent years
- Incident reporting to the supervisor, in the required format and timeframes
- Business continuity and operational resilience of critical functions
How we work and what you get
Gap analysis against applicable guidelines → control testing (design and operating effectiveness) → evidence → report suitable for submission to the supervisor, with a roadmap. You receive the gap analysis aligned to the supervisor, the ICT governance and third-party risk assessment and a prioritised remediation roadmap.