To assist organizations with DORA compliance, AWS has published a new document, the AWS User Guide to the Digital Operational Resilience Act.
The guide describes the roles that AWS and its customers play in managing operational resilience in and on AWS, describes the AWS Shared Responsibility Model, compliance frameworks, AWS services, and features, and measures that customers use to evaluate their compliance with sample DORA requirements when adopting AWS.
The AWS User Guide to DORA aims to meet the needs of various stakeholders within financial services organizations. These include technical decision-makers, such as IT leaders, architects, and engineers; as well as risk and compliance professionals.
The guide highlights key AWS compliance programs and the importance of the AWS Artifact service that provides on-demand access to select security reports, compliance reports, and agreements with AWS, and enables customers to manage ICT third-party risk.
Abstract
The abstract for the AWS User Guide to the Digital Operational Resilience Act reads as follows (verbatim):
This document provides information regarding the adoption of Amazon Web Services (AWS) cloud for entities who are subject to the forthcoming Digital Operational Resilience Act (DORA).
This guide describes the roles that AWS and its customers play in managing operational resilience in and on AWS, describes the AWS Shared Responsibility Model, compliance frameworks, advanced tools, and security
measures that customers can use to evaluate their compliance with applicable regulatory requirements; with an overview of the DORA regulatory requirements and guidance that regulated customers can consider when adopting AWS.






