thehackernews.com
DORA Year Two: Can Your SOC Actually See the Attack?
After the Digital Operational Resilience Act (DORA) took effect EU-wide in January 2025, financial firms spent a year building risk‑governance structures and vetting third‑party providers. In its second year, regulators are demanding proof that those frameworks actually work, focusing on ICT incident analysis and risk supervision. The key question for security operations centres is whether they have sufficient visibility to detect, investigate and contain an intrusion across critical assets. DORA does not mandate a specific security stack, [...]