European Union: European Supervisory Authorities designated critical information and communications technology third-party providers under Digital Operational Resilience Act

Description

European Supervisory Authorities designated critical information and communications technology third-party providers under Digital Operational Resilience Act

On 18 November 2025, the European Supervisory Authorities, comprising the European Banking Authority, the European Insurance and Occupational Pensions Authority, and the European Securities and Markets Authority, designated nineteen critical Informa…

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
digital payment provider (incl. cryptocurrencies), infrastructure provider: cloud computing, storage and databases
Implementation Level
supranational
Government Branch
executive
Government Body
other regulatory body

Complete timeline of this policy change

Hide details
2025-11-18
in force

On 18 November 2025, the European Supervisory Authorities, comprising the European Banking Authorit…