Skip to content

DORA Compliance and Third-Party Risk Assessment

As the digital threat landscape evolves, no risk exists in a vacuum. With the increased reliance on third-party vendors, the risks organizations face from cyber threats can have impacts extending beyond the company, posing potential harm to consumers and even entire economies. To mitigate the fallout of cyber threats that arise through third-party vendors, the Digital Operational Resilience Act (DORA) is a pivotal regulation that aims to enhance information and communication technology (ICT) risk management and cybersecurity reporting through stringent oversight of third-party vendors.

CSIN Incident Response Planning

As new regulations aim at consumer and investor protections, the increased scrutiny of risk management, incident response, and business continuity planning is now a Board-level issue, and cyber event reporting and risk mitigation are crucial concerns for boards of directors across industries. How you plan to communicate risks during incident response is integral to compliant decision-making and escalation processes for CSIN reporting.

After the Incident: Navigating Notification Obligations

Imagine this: Your financial services organization handles sensitive customer information and falls victim to a ransomware attack. An employee clicks on a phishing email, triggering a series of events that compromise your systems. You make a ransom payment to regain access, only to discover that personal customer data was stolen. Now, you face a maze of notification requirements.

Episode 8: Evolution of Data Privacy | On Your Radar Podcast

We’re excited to bring you a new episode of the On Your Radar podcast! This week, we chat with Kalinda Raina, Chief Privacy Officer at LinkedIn, about the evolution of law as it pertains to data privacy. Continue reading to learn more from Kalinda on how data privacy laws and regulations are adapting to rapid technological advancements worldwide.

Episode 7: AI & Cybersecurity Laws Are Coming | On Your Radar Podcast

We’re back with another episode of the On Your Radar podcast. In this week’s episode, we sit down with Nestor Rivera, SVP and Deputy GC, Trust & Privacy, HP Inc., to discuss the current and future use of technology and the evolving regulation around it. Listen in for key insights on enabling enterprise efficiency while also reducing risk.

Episode 6: (Not Enough) Power of AI | On Your Radar Podcast

We’re back with another episode of the On Your Radar podcast. In this week’s episode, we sit down with John Donovan, CEO, Qudit Investments, to discuss the power (both strong and lacking) of AI. Continue reading for key insights on enabling enterprise efficiency while also navigating risk.

Episode 5: Role of Technology | On Your Radar Podcast

We’re back with another episode of the On Your Radar podcast! In this week’s episode, we sit down with Aneesh Bhatnagar, Head of Risk Products at ServiceNow, to discuss the role of technology when it comes to maintaining organizational compliance.

The Power of Collaborative Incident Response

It’s easy to denounce silos and promote collaboration, but how does an organization actually go about enabling communication, compliance, and coordinated action across and between departments? Read more from Judy Titera, Independent Director, Consultant (former Chief Privacy Officer at USAA).

To Manage Enterprise Privacy Risks, CISOs Have to Measure It

When it comes to managing risk, CISOs must know what threatens the privacy and security of their organization’s sensitive data. That means having the ability to identify and measure all the risks lurking throughout the enterprise—no easy feat. Read more on successfully measuring and managing privacy risks in this blog.