Our Clients

The Digital Operational Resilience Act, or DORA, is a new European regulation that aims to improve the security and resilience of the digital capabilities of financial entities and information and communications technology (ICT) service providers in the EU. It came into force on 16 January 2023 and organisations affected by it have until January 2025 to meet its requirements.
DORA applies to more than 22,000 financial entities and ICT service providers operating within the EU, as well as the ICT infrastructure supporting them from outside the EU.
DORA covers topics such as ICT risk management, reporting on ICT-related incidents, digital operational resilience testing, management of third-party risk, and information and intelligence sharing.
Sign up now to receive our DORA Digest that covers these topics and keeps you up to date as the countdown to compliance begins in earnest.
Subscribe to our newsletter
Insights

Beneath the Asset – Out of Sight: The State of Cybersecurity in the Private Equity Industry
The UK’s smallest investment funds are weak security link in protecting the IP needed for national growth, new Thomas Murray study finds.

From RFP to Ongoing ODD: Closing the Monitoring Gap
RFP rigour rarely survives past manager selection. What a robust RFP process looks like, and how to close the monitoring gap that opens once it's over.

Thomas Murray Announces Significant Expansion of Digital Asset Market Information (DAMI) Service with Launch of Phase 2
Thomas Murray, a global leader in risk management, due diligence, and cybersecurity services, is proud to announce the launch of Phase 2 of its Digital Asset Market Information (DAMI)

Fool me once: What the Apollo breach tells private equity about the threats it now faces
Apollo’s August breach was one data point in a five-week campaign mapping 200+ private capital firms. What it means for fund-level cyber risk.
