OneComply launches around DORA operational-resilience workflows for EU financial entities. ISO 27001, NIS2, GDPR, CSSF 22/806, and CRA are exposed as mapped evidence and readiness layers with explicit coverage labels.
Digital Operational Resilience Act
End-to-end workflow coverage
Primary launch workflow for EU financial entities: ICT risk, vendors, incidents, evidence, audit trail, posture, and board/regulator readiness.
OneComply supports operational evidence and reporting readiness; final legal interpretation remains with the customer and counsel.
Information Security Management System
Mapped evidence coverage
Mapped ISMS control library, Statement of Applicability support, policy/evidence linkage, and certification-preparation reporting.
OneComply helps assemble ISMS evidence; it does not replace certification body assessment.
Network and Information Security Directive
Mapped evidence coverage
Entity classification, security-measure evidence mapping, incident-readiness tracking, and supply-chain alignment.
NIS2 obligations vary through national transposition and supervisory expectations.
General Data Protection Regulation
Mapped evidence coverage
Privacy-security evidence linkage across ROPA, DPIA, DSR, consent, breach evidence, processors, and audit trail.
GDPR compliance depends on facts, processing context, legal basis, and customer policies.
ICT Risk Management for Financial Entities
End-to-end workflow coverage
Luxembourg-focused overlay for ICT governance, outsourcing readiness, circular tracking, and DORA/CSSF operational alignment.
CSSF template exports should be reviewed against the current authority template before external submission.
Cyber Resilience Act
Readiness coverage
Future-readiness mapping for product-security controls, SBOM, vulnerability handling, technical documentation, and reporting timelines.
CRA obligations phase in over time and require product-specific conformity assessment.
DORA operations stay central; other frameworks reuse mapped evidence where the control relationship is defensible.
Apply to DP program