Loading...
We deliver mandatory DORA training across your workforce β ICT risk management, third-party ICT risk, incident reporting, digital operational resilience testing, and threat-led penetration testing. Managed rollout, audit-ready evidence accepted by EBA, ESMA, EIOPA, and national supervisors. Live for your team in under a week.
Tell us your team size β receive a tailored proposal within 1 business day.
Trusted by Compliance Teams at Leading Organizations
Staff training is your first line of defence β and the first piece of evidence regulators ask for.
DORA Article 13(6) explicitly requires financial entities to develop ICT-related awareness programs and digital operational resilience training as compulsory modules in their staff training schemes. Article 5 makes the management body responsible for the ICT risk-management framework β and personally accountable. The regulation applies to ~22,000 financial entities across the EU plus their critical ICT third-party providers, with no transitional carve-outs after 17 January 2025.
Article 13(6) β financial entities must include ICT-related awareness and resilience training as compulsory staff training, with documented evidence
Article 5 β management bodies are personally accountable for the ICT risk-management framework and its training components
Article 14 β communication strategies for ICT incidents require staff trained on internal and external escalation
Article 28 β third-party ICT risk obligations cascade training requirements to your critical providers
Curated from our full library and tailored to your entity type (credit institution, payment institution, investment firm, insurer, crypto-asset service provider, ICT third-party), your size, and your role under the regulation β you don't pick modules from a menu, we propose the right curriculum.
DORA scope, entity types, and proportionality principle
ICT risk-management framework (Article 5β16)
Article 13(6) workforce awareness & resilience training
ICT-related incident classification and reporting (Article 17β23)
Major ICT incident reporting timelines (initial, intermediate, final)
Digital operational resilience testing (Article 24β27)
Threat-led penetration testing (TLPT) for significant entities
Third-party ICT risk: register, contracts, exit strategies (Article 28β44)
Critical ICT third-party provider oversight
Information sharing arrangements & cyber threat intelligence
Dedicated customer success manager handles enrolment, role mapping, kickoff communications, and reminder cadence.
Dated certificates per learner, exportable completion logs, and management-body training records that meet supervisor documentation expectations.
Track completion across teams, business lines, and ICT third-party providers. Export evidence packages for EBA, ESMA, EIOPA, and national authorities.
SAML 2.0, OIDC, and SCIM provisioning. New joiners enrolled automatically. Leavers de-provisioned. Zero admin overhead.
Multi-year licensing rolls learners forward each year with content updates as ESAs publish technical standards (RTS/ITS) and supervisor guidance.
Your logo on certificates, co-branded learner emails, and the option to attach your ICT risk policy, incident response plan, or third-party register procedure to any module.
We don't sell self-checkout seats to financial enterprises. We propose a curated curriculum based on your entity type and your DORA proportionality category, manage the rollout, and hand you an evidence package your supervisor will accept on the first review.
βDORA enforcement landed in January 2025 and we needed Article 13(6) training documented across the entire workforce within weeks. The managed rollout delivered audit-ready evidence β and the management-body briefing covered Article 5 personal-liability points exactly the way our board needed.β
βWe're an insurer subject to DORA plus our ICT third-party providers fall in scope. The training program covered both β and the per-entity completion reports plugged straight into our supervisor submission.β
Tell us your entity type (credit institution, payment, investment, insurer, CASP, ICT TPP), your DORA proportionality category, and your headcount. We'll come back with a curriculum proposal, pricing, and a rollout plan within 1 business day.
Free proposal Β· response within 1 business day