Tag: DORA

Stale risk registers leave EU firms exposed to regulators

For EU-regulated firms, managing technology risk is no longer just sound practice. Under DORA, NIS2 and ISO 27001, it is a legal or contractual...

EBA narrows third-party risk rules to critical functions

The European Banking Authority (EBA), the EU agency responsible for banking regulation and supervision, has released its final Guidelines on third-party risk management. The framework...

Why ‘compliance management system’ means different things

Ask ten people what a compliance management system actually is and expect three different answers, each correct within its own context. According to Copla, the...

Why comms compliance rules are converging worldwide

Regulated organisations no longer answer to a single communications compliance rule. Instead, they sit beneath a web of overlapping regimes, each drafted for a...

Copla ditches spreadsheets with new vendor risk platform

Copla has launched third-party risk management software aimed at any organisation handling vendor relationships across procurement, IT, legal and compliance functions, extending well beyond...

DORA turns vendor risk policy into a legal must-have

The Digital Operational Resilience Act has turned third party risk management from a best-practice exercise into a hard compliance requirement, with Article 28 setting...

Why phased modernisation is the safer bet for WealthTech

Wealth managers are being pushed toward a modernisation reckoning. Instant settlement is becoming the norm just as automation demands stronger data governance, while rules...

What is a GRC framework, and why does it matter now?

Governance, risk and compliance are already present in most organisations, but the difference between running them as a connected system and running them as...

The risk framework regulators actually want to see

Every organisation needs a way to identify risk, score it, decide what to do, and check whether that decision held. According to Copla, that structure,...

Wordwatch launches DORA self-assessment for recorder exit plans

RegTech firm, Wordwatch, has published a short self-assessment for compliance and IT teams that need to show they could move off their current communications...

120,000+ FinTech leaders get exclusive industry stories delivered every week