As part of the DORA third party risk management requirements, Financial Entities (FEs) subject to DORA are required to maintain and update a register of information in relation to all contractual arrangements on the use of ICT services provided by ICT third-party service providers.
To help Financial Entities with the requirements in relation to the Register of Information, KPMG’s Risk Consulting Partner and DORA Co-Lead Jackie Hennessy, together with the Risk Consulting team, have put together several resources that focuses on the practical steps firms can take to prepare, review and submit the Register of Information in advance of the upcoming deadline.