Whistlelink webinaire – Les nouvelles régulations sur le lancement d’alertes en France et en Belgique Inscrivez-vous ici

Secure internal reporting for financial entities under DORA

Support your ICT risk governance with a confidential channel where employees, contractors and providers can raise concerns — and cover the internal reporting duties financial regulation already places on you.

Why organisations choose Whistlelink

Trusted across Europe by regulated and unregulated organisations alike.

Where DORA and internal reporting meet

DORA contains no whistleblowing provision — its reporting runs from the entity to the competent authority, on deadlines measured in hours.

Financial entities are not starting from zero, though. An internal reporting channel is already required under the Market Abuse Regulation, the Capital Requirements Directive, MiFID II and the anti-money-laundering rules — the last of which specifies an anonymous channel.

What DORA changes is what has to reach management quickly: ICT weaknesses, failed controls, and how your critical third parties are performing. The channel you already need is the one best placed to carry it.

For compliance, risk and ICT teams

DORA expects ICT risk to be identified, classified and escalated on a clock.

For HR and people teams

Resilience depends on people being willing to say that something is not working.

For leaders and management

Article 5 places ultimate responsibility for ICT risk on the management body. That responsibility is only as good as the information reaching it.

The DORA reporting clock

Once an incident is classified as major, the clock starts — long before anyone has the full picture.

4 hours

from classifying an incident as major to the initial notification

72 hours

from the initial notification to the intermediate report

1 month

from the intermediate report to the final report

Covered by DORA or NIS2?

Many organisations are asking the wrong question first. NIS2 reaches you through national law; DORA applies directly and, for financial entities, takes precedence over the national NIS2 rules — Finansinspektionen has confirmed this for cybersäkerhetslagen. Your ICT providers may sit under NIS2 even where you sit under DORA.

NIS2 and secure internal reporting →

Let's talk!

Want to strengthen your ICT risk governance and show supervisors that concerns actually reach the management body?

Let’s explore how Whistlelink can support your internal reporting and help you meet DORA expectations with confidence.

whistlelink-logo-white-2022.svg

Parler aux ventes

Vous avez des questions sur le forfait qui convient le mieux à votre organisation ou sur la manière de tirer le meilleur parti de Whistlelink ?

→ Or go to our page with Frequently Asked Questions

Obtenir de l'aide pour un produit

Avez-vous besoin de réponses rapides sur le produit ou rencontrez-vous des problèmes ? Nous sommes là pour vous aider.

Attention : Veuillez vous assurer de ne pas inclure d’informations ou de données personnelles provenant de cas de lancement d’alerte spécifiques. Si de telles informations sont incluses, le dossier d’assistance sera immédiatement supprimé.

Contactez-nous

Ravi de vous rencontrer

Contactez-nous

Notre équipe est disponible pour organiser une réunion et une démonstration de Whistlelink.
Choisissez un créneau pour la présentation dans le calendrier.

Territory Manager
Camilla Corsini

Camilla Corsini.

Entrer en contact

Veuillez remplir le formulaire ci-dessous et nous vous répondrons
dans les plus brefs délais.

Parlez avec la Territory Manager Camilla Corsini

HAPPY TO MEET YOU!

Get in touch

Our team is ready to answer your questions. Find the answer by visiting our support centre, or fill out the form below and we'll be in touch as soon as possible. Or simply give us a call!

Talk with Territory Manager
Annelie Demred

annelie.demred@whistlelink.com

Annelie Demred, CEO Whistlelink.