Whistlelink webinar – La ley de Protección del Informante. Estas al día? Apúntate

Secure internal reporting for financial entities under DORA

Support your ICT risk governance with a confidential channel where employees, contractors and providers can raise concerns — and cover the internal reporting duties financial regulation already places on you.

Why organisations choose Whistlelink

Trusted across Europe by regulated and unregulated organisations alike.

Where DORA and internal reporting meet

DORA contains no whistleblowing provision — its reporting runs from the entity to the competent authority, on deadlines measured in hours.

Financial entities are not starting from zero, though. An internal reporting channel is already required under the Market Abuse Regulation, the Capital Requirements Directive, MiFID II and the anti-money-laundering rules — the last of which specifies an anonymous channel.

What DORA changes is what has to reach management quickly: ICT weaknesses, failed controls, and how your critical third parties are performing. The channel you already need is the one best placed to carry it.

For compliance, risk and ICT teams

DORA expects ICT risk to be identified, classified and escalated on a clock.

For HR and people teams

Resilience depends on people being willing to say that something is not working.

For leaders and management

Article 5 places ultimate responsibility for ICT risk on the management body. That responsibility is only as good as the information reaching it.

The DORA reporting clock

Once an incident is classified as major, the clock starts — long before anyone has the full picture.

4 hours

from classifying an incident as major to the initial notification

72 hours

from the initial notification to the intermediate report

1 month

from the intermediate report to the final report

Covered by DORA or NIS2?

Many organisations are asking the wrong question first. NIS2 reaches you through national law; DORA applies directly and, for financial entities, takes precedence over the national NIS2 rules — Finansinspektionen has confirmed this for cybersäkerhetslagen. Your ICT providers may sit under NIS2 even where you sit under DORA.

NIS2 and secure internal reporting →

Let's talk!

Want to strengthen your ICT risk governance and show supervisors that concerns actually reach the management body?

Let’s explore how Whistlelink can support your internal reporting and help you meet DORA expectations with confidence.

whistlelink-logo-white-2022.svg

Hable con Ventas

Tienes dudas sobre qué paquete es el adecuado para su organización o cómo aprovechar al máximo Whistlelink?

 

→ Or go to our page with Frequently Asked Questions

Obtener soporte para el producto

Necesitas respuestas rápidas sobre el producto o tienes un problema? Estamos aquí para ayudar.

Disclaimer: No incluyas información o datos personales de casos de denuncia específicos. En caso de que se incluya dicha información, el mensaje para soporte se eliminará de inmediato.

Contácta con nosotros

ENCATADOS DE CONOCERTE

Contácta con nosotros​

Nuestro equipo está preparado para responder a tus preguntas.

Habla con la Territory Manager
Maria Boboc

Contácta con nosotros

Rellena el siguiente formulario y nos pondremos en contacto contigo lo antes posible

Habla con la Territory Manager Maria Bobóc

HAPPY TO MEET YOU!

Get in touch

Our team is ready to answer your questions. Find the answer by visiting our support centre, or fill out the form below and we'll be in touch as soon as possible. Or simply give us a call!

Talk with Territory Manager
Annelie Demred

annelie.demred@whistlelink.com

Annelie Demred, CEO Whistlelink.