AttackIQ Introduces DORA Automated Assessments
August 06, 2024

AttackIQ announced the launch of testing aligned with the Digital Operational Resilience Act (DORA).

This empowers financial institutions in the European Union (EU) to gain important visibility to help support their compliance with DORA.

DORA mandates robust cybersecurity measures for financial institutions to withstand and recover from cyberattacks and operational disruptions. Key requirements include establishing ICT risk management frameworks, reporting ICT incidents, and conducting regular testing of ICT systems. AttackIQ has released new DORA assessments to simplify compliance testing by providing:

- Automated Threat Emulation: The DORA assessments execute the top tactics, techniques, and procedures (TTPs) employed by adversaries known to target financial services organizations. These TTPs reflect the latest intelligence and threat research into the top methods used by EU financial sector adversaries.

- Actionable Insights: The DORA Assessment Report provides comprehensive recommendations and mitigation strategies for any testing scenario that was not prevented. Recommendations are derived from the extensive knowledge base of the AttackIQ research team, enriched with insights from MITRE ATT&CK standards and industry best practices.

- MITRE ATT&CK Alignment: The DORA assessments align with MITRE ATT&CK, offering actionable insights in a framework leveraged by cybersecurity practitioners worldwide.

“AttackIQ is committed to helping EU financial entities & critical 3rd party providers strengthen their defenses against targeted attacks and achieve DORA compliance with minimal disruption,” said Carl Wright, Chief Commercial Officer of AttackIQ. “Our DORA assessments streamline the process by automating emulations based on real-world attacker behaviors outlined in MITRE ATT&CK.”

AttackIQ offers two test packages, Basic and Advanced, catering to different testing needs. The DORA Basic assessment evaluates essential, minimum functionalities of controls, providing a foundational understanding of their effectiveness. For a more in-depth analysis, the DORA Advanced assessment utilizes more sophisticated and targeted TTPs to go beyond the scope of the Basic tests.

Organizations leverage AttackIQ, to continuously test their security controls against real-world cyberattacks modeled on the MITRE ATT&CK framework. This allows them to identify weaknesses, prioritize security investments, and ensure their defenses are working effectively to prevent breaches and data loss.

AttackIQ DORA Basic and Advanced Testing Packages are now available to customers.

Share this

Industry News

September 10, 2024

Oracle announced new capabilities to help customers accelerate the development of applications and deployment on Oracle Cloud Infrastructure (OCI).

September 10, 2024

JFrog and GitHub unveiled new integrations.

September 10, 2024

Opsera announced its latest platform capabilities for Salesforce DevOps.

September 09, 2024

Progress announced it has entered into a definitive agreement to acquire ShareFile, a business unit of Cloud Software Group, providing SaaS-native, AI-powered, document-centric collaboration, focusing on industry segments including business and professional services, financial services, healthcare and construction.

September 05, 2024

Red Hat announced the general availability of Red Hat Enterprise Linux (RHEL) AI across the hybrid cloud.

September 05, 2024

Jitterbit announced its unified AI-infused, low-code Harmony platform.

September 05, 2024

Akuity announced the launch of KubeVision, a feature within the Akuity Platform.

September 05, 2024

Couchbase announced Capella Free Tier, a free developer environment designed to empower developers to evaluate and explore products and test new features without time constraints.

September 04, 2024

Amazon Web Services, Inc. (AWS), an Amazon.com, Inc. company, announced the general availability of AWS Parallel Computing Service, a new managed service that helps customers easily set up and manage high performance computing (HPC) clusters so they can run scientific and engineering workloads at virtually any scale on AWS.

September 04, 2024

Dell Technologies and Red Hat are bringing Red Hat Enterprise Linux AI (RHEL AI), a foundation model platform built on an AI-optimized operating system that enables users to more seamlessly develop, test and deploy artificial intelligence (AI) and generative AI (gen AI) models, to Dell PowerEdge servers.

September 04, 2024

Couchbase announced that Couchbase Mobile is generally available with vector search, which makes it possible for customers to offer similarity and hybrid search in their applications on mobile and at the edge.

September 04, 2024

Seekr announced the launch of SeekrFlow as a complete end-to-end AI platform for training, validating, deploying, and scaling trusted enterprise AI applications through an intuitive and simple to use web user interface (UI).

September 03, 2024

Check Point® Software Technologies Ltd. unveiled its innovative Portal designed for both managed security service providers (MSSPs) and distributors.

September 03, 2024

Couchbase officially launched Capella™ Columnar on AWS, which helps organizations streamline the development of adaptive applications by enabling real-time data analysis alongside operational workloads within a single database platform.