EU-DORA-22-03
Risk Management
22 — Supervisory feedback
Maintain responsibility for ICT incident handling despite supervisory feedback
Description
Financial entities must remain fully responsible for handling ICT-related incidents and their consequences, regardless of any supervisory feedback received from competent authorities.
Full Analysis & Evidence Requirements
Sign in to view the full obligation text, AI-generated applicability analysis, evidence checklists, and compliance mapping.
Sign In to ViewRelated Obligations
EU-DORA-22-01
Reporting
Acknowledge receipt of incident notifications and reports
EU-DORA-22-02
Monitoring
Provide supervisory feedback on incident reports
EU-DORA-22-04
Reporting
Provide incident details to ESAs for annual reporting
EU-DORA-22-05
Reporting
Produce annual aggregated report on major ICT incidents
EU-DORA-22-06
Transparency
Issue ICT threat warnings and produce statistics
Map this obligation to your AI systems
ReguLume automatically maps regulatory obligations to your system inventory, identifies compliance gaps, and generates remediation plans.
Get Started