Course Images

DORA Register of Information, Third-Party Risk  Management & Incident Handling and Reporting

DORA Register of Information, Third-Party Risk Management & Incident Handling and Reporting

Dates

  • to
    Delivered Online
    €160+ VAT
    Book

Highlights

  • Live Online

  • 3 CPD Units | 3 Hours


The EIMF Live Online Learning Experience

Participants will receive access to the recorded sessions of the course.

EIMF subject-matter experts deliver engaging and interactive courses across a broad spectrum of areas, that can be enjoyed in the comfort of your own chosen environment. Read more


Course Overview

The Digital Operational Resilience Act (DORA) became applicable on 17 January 2025, which stands as a transformative framework. Its implications are far-reaching, especially for financial institutions navigating complex third-party risk environments. DORA mandates a proactive approach to managing ICT third-party relationships, emphasising the need for robust security, resilience, and compliance.

From that date, all financial entities in its scope will need to have a comprehensive register of their contractual arrangements with ICT third-party service providers available at entity, sub-consolidated and consolidated levels.

In addition, timely identification, assessment, handling and reporting of ICT- related incidents to competent authorities (CySEC, CBC and Superintendent of Insurance), forms a significant challenge for the management of financial entities.

For financial entities, this regulation isn’t just a checklist to tick off; it’s a blueprint for enhancing operational resilience in an increasingly interconnected world.

This course is designed to foster a proactive approach to regulatory compliance, emphasising the importance of diligence, accuracy, and responsiveness in meeting DORA requirements and ensuring regulatory adherence.


Training Objectives

By the end of the course, participants will:

  • Have obtained good understanding of DORA requirements, surrounding the area of third-party risk management, as well as incidents handling and reporting

  • Be able to navigate the reporting fields of DORA Register of Information, understanding its particularities and enabling accurate and complete reporting

  • Understand ICT third-party risk management and key provisions stemming from.

  • Identify and understand the key contractual provisions for DORA compliance during the onboarding and review process of ICT vendors

  • Have delved into the intricacies of DORA Incident Management provisions, gaining practical insights into specific reporting rules and key data fields essential for successful implementation

  • Be aware of some of the practical issues that have arisen in reporting

  • Know where to look for further guidance


Training Outline

The main areas that this course will cover are:

  • Incident Handing & Reporting

  • Third-Party Risk Management

  • DORA Register of Information and linkage to Outsourcing

  • Key contractual provisions for DORA compliance

  • Key metrics to track when evaluating third-party vendors

  • The DORA audit process


Who Should Attend

The programme is ideal for financial service professionals in banking and investment, as well as financial service providers / advisors:

  • Managers / Senior Managers

  • Compliance Officers / Risk Officers

  • Front-line professionals

  • Internal Auditors

  • External auditors, lawyers and consultants


Training Style

The training will include the presentation of key materials via using slides and handouts. The trainer will use practical examples to elaborate various concepts and encourage class discussion.

Participants will engage in exchange of ideas and sharing of knowledge on the subject matter, as well as be able to ask questions and obtain clarifications from the trainer on the material covered.

Participants will also have the opportunity to benchmark experiences with industry peers and raise issues of most concern to their organisation, either confidentially or in open session in a Q&A Session.


CPD Recognition

This programme may be approved for up to 3 CPD units in Financial Regulation. Eligibility criteria and CPD Units are verified directly by your association, regulator or other bodies which you hold membership.


In-house Training

For groups within the same organisation, this course may be customized to meet any specific needs and delivered in-house.


Facilitators

  • Antonis Hadjikostas

    Antonis Hadjikostas

    Read moreShow less

    Antonis is a passionate and highly experienced professional, who brings over 15 years of practical experience in the areas of banking, investment, and insurance services industry, particularly in regulatory compliance. His expertise includes among others, Credit Granting and Arrears Management frameworks, Payment Systems, MiFID II, IDD, FATCA/CRS, DAC6, Solvency II, and ESG. Antonis commenced his career at HSBC Greece in 2007 before transitioning to PwC Cyprus in 2010. During his time at PwC, he became a qualified Chartered Accountant of the ICAEW and successfully managed a significant portfolio of clients in the financial and insurance sectors, both locally and internationally. Since 2019, Antonis has been leading the Regulatory Compliance team at a systemic financial institution in Cyprus, servicing also as an Interim Chief Compliance Officer for a short period of time. As a trainer, Antonis specialises in designing training programs to meet individual learning styles while fostering a supportive and inclusive learning environment. His wider experience across regulatory compliance, interaction with regulators and industry experts, as well as his ability to adapt training methods to diverse audiences, set Antonis apart in the field. As of April 2024, Antonis is a Founding Member and assumes role of Vice-Chairperson at the Cyprus Compliance Association (CCA) Board of Directors. Antonis holds a BSc and an MSc from Aristotle University of Thessaloniki in Mathematics, Statistics, and Operational Research. He is a fellow member of the Institute of Chartered Accountants in England and Wales (ICAEW), a member of ICPAC (Institute of Certified Public Accountants of Cyprus), a member of the Mediators on Commercial Disputes under the Ministry of Justice, as well as professional member (MiCA) of the International Compliance Association (ICA).

Frequently Asked Questions

  • When will I receive my invoice?

    The invoice is issued on the day the course starts.

  • What payment methods are accepted?

    Payments can be made by bank transfer, cheque, or credit card.

  • When will my certificate be issued?

    Certificates are issued within 7–10 days after the course has been completed, provided that the invoice has been paid.

  • How can I access my certificate?

    Once your certificate has been issued, you will receive an automated email from Cademy notifying you that it is available.

    Click the Get Your Certificate button in the email to download your certificate.

    You can also access it from your Cademy account:

    1. Log in to your Cademy account from https://cademy.io
    2. Click on My Account from the top-right corner.
    3. From the drop-down menu select My Courses and Bookings.
    4. Choose the relevant course.
    5. Under Participants, click the three dots located next to your name. 
    6. Select Get Certificate.
  • Where can I access the course material?

    To access the course materials, such as presentations and recordings:

    1. Log in to your Cademy account from https://cademy.io
    2. Click on My Account from the top-right corner.
    3. From the drop-down menu select My Courses and Bookings.
    4. Choose the relevant course.
    5. Under Extra Details, you will find all the available course materials.