Governance and organisation
Summary
Financial entities shall have in place an internal governance and control framework ensuring effective and prudent management of ICT risk, with the management body bearing ultimate responsibility and keeping up to date with sufficient ICT risk knowledge and skills.
governancemanagement bodyaccountabilityict risk
Read the full official text: https://www.digital-operational-resilience-act.com/Article_5.html
Track DORA article 5 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial