DORA Digital Operational Resilience for Telecommunications | ComplyDev

DORA. Digital operational resilience for the financial sector Competent Authority: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Deadline: January 17, 2025

Last updated: 13/03/2026

Key Points

  • ICT risk management framework
  • Classified incident reporting (major incidents)
  • Digital operational resilience testing (including threat-led penetration tests)
  • ICT third-party risk management
  • Information sharing arrangements

What is DORA and how does it apply to Telecommunications?

DORA. Digital operational resilience for the financial sector Competent Authority: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Legal Basis: EU Regulation 2022/2554. Deadline: January 17, 2025

Who in the Telecommunications sector must comply with DORA?

DORA. Telecom operators, ISPs and communication service providers 100-10000 employees. For Medium enterprises (50–249 employees) in the Telecommunications sector, DORA compliance requires specific attention to: Key Requirements: ICT risk management framework; Classified incident reporting (major incidents); Digital operational resilience testing (including threat-led penetration tests).

Penalties for non-compliance with DORA

Penalties: Up to €10M or 5% of annual turnover. Important: The DORA compliance deadline is approaching. Do not wait to start your assessment.

How to start your DORA compliance journey

Check your DORA compliance for free. ComplyDev's AI-powered assessment analyses your Telecommunications company against 111+ EU regulations in 20 minutes — no registration, no credit card. Key Requirements: ICT risk management framework; Classified incident reporting (major incidents); Digital operational resilience testing (including threat-led penetration tests).

Sector Advice

  • Check your DORA compliance for free. ComplyDev's AI-powered assessment analyses your Telecommunications company against 111+ EU regulations in 20 minutes — no registration, no credit card.
  • For Medium enterprises (50–249 employees) in the Telecommunications sector, DORA compliance requires specific attention to:
  • Digital Operational Resilience: EBA, ESMA, EIOPA (ESAs) - Bank of Italy in Italy. Deadline: January 17, 2025.

Frequently Asked Questions

DORA Key Requirements
ICT risk management framework; Classified incident reporting (major incidents); Digital operational resilience testing (including threat-led penetration tests); ICT third-party risk management; Information sharing arrangements
DORA Penalties
Up to €10M or 5% of annual turnover
DORA - Telecommunications
Start your free cybersecurity compliance assessment — no registration required, results in 20 minutes.

Related Pages

Want a Detailed Report?

With the Premium plan you get full gap analysis, intervention plan and personalised cost estimates.

View Plans