Classification of major ICT-related incidents and significant cyber threats
Summary
Financial entities shall report major ICT-related incidents and significant cyber threats to the competent authorities.
incident reportingclassificationcyber threatsnotification
Read the full official text: https://eur-lex.europa.eu/eli/reg/2022/2554/oj
← Article 30
Preliminary assessment of ICT concentration risk
Article 38 →
General requirements for digital operational resilience testing
Track DORA article 34 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial