Certified DORA Lead Manager

Develop the skills to lead DORA implementation in financial entities, covering ICT risk and incident management, operational resilience testing, third-party risk management, information sharing, governance, monitoring, and continual improvement.

Course Overview

The Certified DORA Lead Manager training course develops the knowledge and skills required to lead and oversee digital operational resilience initiatives within financial entities in accordance with the European Union’s Digital Operational Resilience Act (DORA). The course addresses ICT risk management, ICT-related incident management and reporting, digital operational resilience testing, ICT third-party risk management, and information and intelligence sharing.

Participants learn how to prepare and plan DORA implementation, establish appropriate governance, manage ICT-related risks and incidents, address third-party risks, and support monitoring and continual improvement. The course also covers training and awareness, competent authorities, internal audit, and management review, concluding with a case study, recap, question-and-answer session, and certification exam.

Course Objective

  • Understand the purpose of DORA and interpret its requirements
  • Understand fundamental concepts of ICT risk management and digital operational resilience
  • Understand ICT-related incident management and reporting
  • Prepare and plan the implementation of DORA requirements
  • Apply governance and organizational considerations for DORA implementation
  • Implement the five main pillars for enhancing digital operational resilience in accordance with DORA requirements
  • Manage ICT third-party risks and understand the Oversight Framework
  • Understand information and intelligence sharing in the context of DORA
  • Monitor, measure, analyze, and evaluate digital operational resilience
  • Review and continually improve an organization’s digital operational resilience

Pre-requisites

A fundamental understanding of information security and cybersecurity concepts, along with familiarity with ICT risk management principles.

Course Curriculum