Digital Operational Resilience Act (DORA)
The Digital Operational Resilience Act (DORA) is a regulatory framework set by the European Union to enhance the cybersecurity and operational resilience of financial institutions.
DORA mandates that financial entities strengthen their defence against digital threats, ensuring that they are well prepared to withstand and recover from cyber incidents.
Our DORA course covers key requirements for ICT risk management, incident reporting, resilience testing, third-party risk management, and information sharing, helping ensure regulatory compliance.
- 25 Minutes
- All staff
- Based on UK legislation, but suitable for global audiences upon the removal of UK-specific references and translation as necessary.

Learning objectives
- Implement and maintain a comprehensive information and communication technologies (ICT) risk management framework and actively participate in risk assessments and mitigation strategies
- Promptly identify, report and respond to ICT-related incidents
- Participate in regular resilience testing to help assess and improve our defences against cyber threats
- Conduct due diligence on ICT third-party providers, confirm they meet DORA's standards and monitor their performance
- Follow cybersecurity best practices, report suspicious activity and comply with all protocols to protect our ICT systems
What can you expect your employees to learn?
Introduction
What is DORA?
- Who does it apply to?
- The five pillars
Pillar 1: ICT risk management and governance
- ICT risk management and governance
- What this means for our firm
- What this means for you
- You decide
Pillar 2: Incident reporting
- What this means for our firm
- What this means for you
- You decide
Pillar 3: Resilience testing
- What this means for our firm
- What this means for you
- You decide
Pillar 4: ICT third-party risk management
- What this means for our firm
- What this means for you
- You decide
Pillar 5: Information sharing
- What this means for our firm
- What this means for you
- You decide
Summary
Affirmation
Assessment
Start your compliance e-learning journey with a free trial
Our no-obligation free trial gives you access to our libraries and compliance platform.
Ready to start your free trial? Complete the form, and a member of the Skillcast team will be in touch with further details.
Your questions, answered
Cybersecurity
DORA
CoreCompliance
CyberFocus
Common FAQs
Where can I track incidents involving personal data?
How can I benchmark my team's cybersecurity awareness?
An anonymous cybersecurity awareness survey can assess your team's understanding of critical security practices. Skillcast offers ready-to-use surveys to benchmark awareness levels and identify areas needing extra focus.
How can I benchmark my team's cyber security awareness?
Which courses are included in CoreCompliance?
All users get access to courses on popular compliance topics, such as: bribery, cybersecurity, equality, health and safety. In addition, you can get courses specific to your business sector.
There are over 150 courses included within the CoreCompliance package. The actual courses provided depend on the sector chosen for the subscription.
Are CoreCompliance courses only intended for use by those based in the UK?
Do the courses bookmark my progress?
What are in-depth courses?
What are microlearning courses?
Can we use a Skillcast certificate to evidence training to regulators, courts, etc?
What is "mandatory training"?
How do I check my mandatory training?
What is in my training record?
Can I get certificates for courses I've completed?
How do I update my details?
Do I get a dashboard to manage my employees?
How do I start a subscription?
Can I change the number of seats in my subscription?
Can I get monthly or annual subscriptions?
Can I get an invoice for the subscription?
How long do I have to wait to assign training after making the payment?
How do I purchase more seats?
Can I reuse the seats of employees who have left my company?
Can I add more than 50 users to my subscription?
Can I get a refund if I terminate my subscription partway through the year?
Are Skillcast courses SCORM-compliant?
What other tools are needed beyond training?
Is our training content still compliant with the latest legislation?
- You can check the latest course content updates in our library updates page: https://www.skillcast.com/compliance-course-library-updates
- For major legislative changes, we:
- Will send you email alerts to ensure you are notified
- Offer you a free trial of newly created or updated content
- Host webinars with compliance experts to explain the changes and how our training supports your ongoing compliance
Can you translate our content into other languages?
How can I give employees a secure way to record suspicious activity so we can act quickly?
Our Suspicious Activity Register allows staff to log concerns or irregularities they observe, helping you detect potential issues early. The secure register can be reviewed by compliance teams, enabling prompt investigation and action.
What file types are supported by the Skillcast system?
Features |
Supported file types and details |
File Exchange |
File types: PDF, Excel spreadsheets, Word documents, SCORM and xAPI files, and compressed zip files. Max file size: Default is 1GB, can be increased to a max of 2GB |
SCORM files |
Versions: SCORM 1.2, SCORM 1.2 for Moodle, SCORM 2004 2nd, 3rd and 4th Edition. Max file size: 1024MB |
xAPI file |
Max file size: 2GB |
Videos |
File types: MP4 or MOV. Videos must be optimised, with a max file size of 100MB. If the file is bigger, our Design Team can help |
Images |
File types: jpg, png and gif. The file size should ideally be 100KB, but it can be up to 250KB |
CPD evidence |
File types: Word, PDF, Excel and CSV. File size: the limit should be whatever the portal config option is set to. Servers are set to max 2GB |
Policy documents |
PDF or Word File size: the limit should be whatever the portal config option is set to. Servers are set to max 2GB |
Offline activities evidence |
File types: PDF, DOC, DOCX, XLS, XLSX, CSV, PNG, GIF, JPEG, JPG, PPTX and MSG. File size: the limit should be whatever the portal config option is set to. Servers are set to max 2GB |
Client logo files |
File types provided by client: EPS, PDF, AI and SVG |
Registers |
PDF, DOC, DOCX, XLS, XLSX, CSV, PPT, PPTX, POT, PPA, PPS, JPG, JPEG, PJEPG, PNG, BMP, GIF, MP4, MOV, WMV, CPTX, CP, TXT, ZIP and MSG files |
Declarations |
JPG, JPEG, PNG, GIF, XLS and XLSX files |