Prawo Nowych Technologii

no. 3/2024

Regulatory framework of operational digital resilience in the financial sector - selected issues

DOI: 10.32027/PNT.24.3.9
Dorota Echaust-Przybytniak
Autorka jest doktorem nauk prawnych, adwokatem - członkiem Warszawskiej Izby Adwokackiej, wykładowcą akademickim Akademii Leona Koźmińskiego w Warszawie. Specjalizuje się w prawie cywilnym, prawie ochrony informacji i danych osobowych, prawie bankowym, prawie nowych technologii oraz zagadnieniach związanych z cyberbezpieczeństwem i compliance
Abstract

The article aims to present the issues of security of data processing over a network and operational digital resilience in light of Regulation (EU) 2022/2554 of the European Parliament and of the Council of 14 December 2022 on digital operational resilience for the financial sector and amending Regulations (EC) No 1060/2009, (EU) No 648/2012, (EU) No 600/2014, (EU) No 909/2014 and (EU) 2016/1011 (DORA) and regulatory technical standards identifying tools, methods, processes, as well as policies and frameworks for managing ICT-related risks, aimed to ensure the effective application of this Regulation.
The article is an analysis of publicly available reports, communications, guidelines and recommendations of the Polish Financial Supervision Authority on cybersecurity, ICT risk management, conducting digital resilience tests taking into account the regulations of national law and guidelines of the Polish supervisory authority in the field of cybersecurity.

Keywords
DORA, cybersecurity, ICT risk management, operational digital resilience