Instructions for the assessments according to the communication to the market on ICT security

With its communication to the market on ICT security issued on 23 December 2024, Banca d'Italia asked financial entities to assess their status with respect to the requirements introduced by the Digital Operational Resilience Act (Regulation (EU) 2022/2554), commonly known as DORA and to conduct a self-assessment of their ICT risk management framework.

To help financial entities carry out the required assessments and, at the same time, to ensure greater comparability of responses, Banca d'Italia is providing intermediaries with a standard template.