Εμφάνιση απλής εγγραφής

dc.contributor.advisorGritzalis, Stefanos
dc.contributor.advisorΓκρίτζαλης, Στέφανος
dc.contributor.authorSkiadioti, Maria - Fani
dc.contributor.authorΣκιαδιώτη, Μαρία - Φανή
dc.date.accessioned2025-02-26T10:11:09Z
dc.date.available2025-02-26T10:11:09Z
dc.date.issued2025-02
dc.identifier.urihttps://dione.lib.unipi.gr/xmlui/handle/unipi/17509
dc.format.extent73el
dc.language.isoenel
dc.publisherΠανεπιστήμιο Πειραιώςel
dc.rightsΑναφορά Δημιουργού-Μη Εμπορική Χρήση-Όχι Παράγωγα Έργα 3.0 Ελλάδα*
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/3.0/gr/*
dc.titleExamining compliance requirements under the EU’s Digital Operational Resilience Act (DORA) for the financial sectorel
dc.typeMaster Thesisel
dc.contributor.departmentΣχολή Τεχνολογιών Πληροφορικής και Επικοινωνιών. Τμήμα Ψηφιακών Συστημάτωνel
dc.description.abstractENThe current essay strives to critically examine the regulatory requirements under Regulation (EU) 2022/2554 of the European Parliament on digital operational resilience for the financial sector (DORA) that is framed by and aims to set out uniform requirements for the security of networks and information systems of entities operating in the financial sector including ICT third-party service providers. In that direction, the European Supervisory Authorities (ESAs), namely the European Banking Authority (EBA), the European Insurance and Occupational Pensions Authority (EIOPSA), and the European Security and Markets Authority (ESMA), in consultation with the European Union Agency on Cybersecurity (ENISA), are in the process of developing common regulatory technical standards (RTS) to both ensure the harmonization of ICT risk management tools, methods, processes and policies and provide a simplified ICT risk management framework for financial entities under its scope. Further on this, while DORA provides a sector specific focus, it can leverage methodologies and global applicability and this synergy is encouraged throughout its documentation. Under that prism, the essay looks into these requirements and also addresses the collaborative relevance of existing standards and frameworks namely the ISO/IEC standards regarding the management of risks, ensuring business continuity and protection of information assets and the Threat Intelligence-Based Ethical Red Teaming (TIBER)-EU framework developed by the European Central Bank (ECB) to test and improve the cyber resilience of financial infrastructures and institutions, in an effort to consolidate the key points of this pivotal regulatory framework. The core elements of this review constituted an aggregated checklist tool for high-level compliance monitoring. The tool also serves as a simplified risk assessment ultimately resulting in an Overall Residual Risk Score and a Planning process that ranks risks from highest to lowest that could, in conjunction with an Audit Universe, lead to an Audit Plan.el
dc.contributor.masterΑσφάλεια Ψηφιακών Συστημάτωνel
dc.subject.keywordDigital Operational Resilience Act (DORA)el
dc.subject.keywordDORA Complianceel
dc.subject.keywordFinancial Sector ICT Complianceel
dc.subject.keywordRegulatory Technical Standards (RTS)el
dc.subject.keywordDORA Compliance checklistel
dc.subject.keywordDORA Compliance high-level assessmentel
dc.date.defense2025-02-24


Αρχεία σε αυτό το τεκμήριο

Thumbnail

Αυτό το τεκμήριο εμφανίζεται στις ακόλουθες συλλογές

Εμφάνιση απλής εγγραφής

Αναφορά Δημιουργού-Μη Εμπορική Χρήση-Όχι Παράγωγα Έργα 3.0 Ελλάδα
Εκτός από όπου διευκρινίζεται διαφορετικά, το τεκμήριο διανέμεται με την ακόλουθη άδεια:
Αναφορά Δημιουργού-Μη Εμπορική Χρήση-Όχι Παράγωγα Έργα 3.0 Ελλάδα

Βιβλιοθήκη Πανεπιστημίου Πειραιώς
Επικοινωνήστε μαζί μας
Στείλτε μας τα σχόλιά σας
Created by ELiDOC
Η δημιουργία κι ο εμπλουτισμός του Ιδρυματικού Αποθετηρίου "Διώνη", έγιναν στο πλαίσιο του Έργου «Υπηρεσία Ιδρυματικού Αποθετηρίου και Ψηφιακής Βιβλιοθήκης» της πράξης «Ψηφιακές υπηρεσίες ανοιχτής πρόσβασης της βιβλιοθήκης του Πανεπιστημίου Πειραιώς»