Banks and financial market infrastructures fall under NIS2 Annex I, but financial services entities are also subject to the Digital Operational Resilience Act (DORA) for ICT third-party risk. The supply chain assurance work substantially overlaps between the two regimes, and a well-designed evidence model can satisfy both with shared artefacts.
Back to the product
Sector · Banking & financial services
Supply chain assurance for banking and financial services
5.0 / Next step
Where are you with NIS2 supplier work in banking & financial services?
Two ways to find out fast — a five-minute self-assessment, or a practitioner-walked exposure picture in two to three weeks.