DORA SME Assessment for Trust Services | ComplyDev
DORA. Digital operational resilience for the financial sector Competent Authority: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Deadline: January 17, 2025
Last updated: 13/03/2026
Key Points
- ICT risk management framework
- Classified incident reporting (major incidents)
- Digital operational resilience testing (including threat-led penetration tests)
- ICT third-party risk management
- Information sharing arrangements
What is DORA and how does it apply to Trust Services?
DORA. Digital operational resilience for the financial sector Competent Authority: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Legal Basis: EU Regulation 2022/2554. Deadline: January 17, 2025
Who in the Trust Services sector must comply with DORA?
DORA. Certification authorities, identity providers and trust service providers 20-200 employees. For Medium enterprises (50–249 employees) in the Trust Services sector, DORA compliance requires specific attention to: Key Requirements: ICT risk management framework; Classified incident reporting (major incidents); Digital operational resilience testing (including threat-led penetration tests).
Penalties for non-compliance with DORA
Penalties: Up to €10M or 5% of annual turnover. Important: The DORA compliance deadline is approaching. Do not wait to start your assessment.
How to start your DORA compliance journey
Check your DORA compliance for free. ComplyDev's AI-powered assessment analyses your Trust Services company against 111+ EU regulations in 20 minutes — no registration, no credit card. Key Requirements: ICT risk management framework; Classified incident reporting (major incidents); Digital operational resilience testing (including threat-led penetration tests).
Sector Advice
- Check your DORA compliance for free. ComplyDev's AI-powered assessment analyses your Trust Services company against 111+ EU regulations in 20 minutes — no registration, no credit card.
- For Medium enterprises (50–249 employees) in the Trust Services sector, DORA compliance requires specific attention to:
- SME Assessment: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Deadline: January 17, 2025.
Frequently Asked Questions
DORA Key Requirements
DORA Penalties
DORA - Trust Services
Related Pages
DORA for the Trust Services Sector
Discover in just a few minutes your Trust Services company's compliance level with DORA and receive a personalised action plan.
Cybersecurity for the Trust Services Sector
Guide to cybersecurity compliance for the Trust Services sector. NIS2, GDPR, DORA and other regulations: requirements, penalties and costs for trust services.
DORA Complete Guide for Trust Services | ComplyDev
Complete Guide for DORA compliance in the Trust Services sector. Free assessment, no registration required.
DORA Compliance Checklist for Trust Services | ComplyDev
Compliance Checklist for DORA compliance in the Trust Services sector. Free assessment, no registration required.
DORA Key Requirements for Trust Services | ComplyDev
Key Requirements for DORA compliance in the Trust Services sector. Free assessment, no registration required.
Want a Detailed Report?
With the Premium plan you get full gap analysis, intervention plan and personalised cost estimates.
View Plans