With the help of our CER Lead Auditors, you will penetrate the upcoming legislation well in advance, find out whether it will affect your organization, when you will have to comply with the new rules and how best to achieve compliance when implementing the required measures. Due to the professional focus, the course is particularly suitable for:
Auditors
Critical Infrastructure Managers (CIMs)
Cyber Security Managers (MKB)
Compliance managers, responsible for achieving compliance with CER and NIS2 directives
All crisis management, security, risk management, BCM and ISMS professionals
We guarantee the highest expertise! The working group of the ZKI Readiness™ course participates in the creation of the upcoming law on strengthening the resilience of critical infrastructure entities (ZKI) based on the EU directive on the resilience of critical entities Critical Entities Resilience (CER).
The course does not require prerequisites, but we recommend taking the CER Intro (Critical Entities Resilience Introduction) course.
The DORA regulation (Digital Operational Resilience Act) is a European regulation that sets uniform requirements for the security of networks and information systems of organizations operating in the financial sector and their suppliers of information technology and IT services, such as cloud platforms or data analysis services.
Already on December 27, 2022, the new Regulation of the European Parliament and of the Council (EU) 2022/2554 of December 14, 2022 on the digital operational resilience of the financial sector and on the amendment of other regulations, abbreviated as DORA (Digital Operational Resilience Act), was published in the Official Journal i.e. Digital Operational Resilience Regulation). It should be applicable (ie effective) from 17 January 2025.
The scope of obligations to ensure information and cyber security will not change that much with the new law. What will be new, however, will be the number of regulated entities. Under the current cyber security law regime, obligations are imposed on several hundred larger firms and public bodies. The new law will affect thousands, if not tens of thousands, of organizations. Including a number of medium and smaller entities. Even in areas that have not yet been covered by any regulation directly related to information or cyber security, such as the food industry, waste management, the provision of certain IT services, transport, etc.