Episode
Inside the Early Lessons of DORA Compliance: What Works, What Fails, What’s Next?
- Published
- Jun 25, 2025
- Duration seconds
- 3382
- Processing state
not_requested
Actions
POST https://stenobird.com/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/inside-the-early-lessons-of-dora-compliance-what-works-what-fails-what-s-next/transcription-requests
Idempotently request low-priority transcript generation for this episode.GET https://stenobird.com/podcast/razorwire-cyber-security-infosec-insights-5584923/inside-the-early-lessons-of-dora-compliance-what-works-what-fails-what-s-next.md
Read the agent-friendly Markdown representation of this episode resource.
Summary
Six months into DORA's implementation, what's actually happening in financial services organisations? Welcome back to Razorwire, where we tackle cybersecurity's toughest challenges with honesty and expert insight. In this episode, I'm joined by returning experts Jonathan Care and Richard Cassidy and also a new guest to the podcast, Romain Deslorieux, to examine how the Digital Operational Resilience Act is playing out in practice. Now some time has passed since DORA's January deadline, we're seeing the real story emerge. Some organisations are discovering they fundamentally misunderstood what compliance actually requires. Others are struggling with skills gaps they didn't anticipate. And many are finding that operational resilience can't simply be bought or outsourced. Our guests share what they're witnessing firsthand – from boardrooms finally grasping why digital resilience matters to IT teams pushed beyond their limits. We discuss the vendor relationship upheaval, the consultant dependency trap, and why some approaches are succeeding while others spectacularly fail. If you're dealing with DORA implementation, wrestling with third-party risk or watching your security team stretched thin, this conversation offers the unvarnished perspective you need. Key Talking Points: From Tick-Box Compliance to True Resilience: Discover why DORA is exposing the dangerous gap between documentation exercises and actual operational readiness and why this demands unprecedented collaboration across IT, compliance and business teams. The Human Capital Crisis Behind DORA: Learn how the regulation is revealing critical expertise shortages (40-50% of financial entities lack internal capabilities), creating dangerous over-reliance on consultants and pushing existing teams towards burnout. Th…