#financial services

Security awareness tips, industry news, and product updates.

European financial district skyline representing the EU financial sector reporting ICT incidents under DORA
Compliance & RegulationsThreat Intelligence

DORA Year One: What 3,383 Major ICT Incidents Reveal

The European Supervisory Authorities have published the first annual report on major ICT incidents under DORA: 3,383 reports in 2025, most from the credit and payments sectors. Here is what the numbers show, and why the 4-hour reporting clock depends on people as much as process.

Marcus Chen·8/26/2026·6 min read
New York financial district offices representing NYDFS-regulated entities subject to Part 500 training requirements
Phishing & Social EngineeringCompliance & Regulations

NYDFS Vishing Advisory: Part 500 Training Expectations

NYDFS has told regulated financial entities, in writing, to train staff against help-desk vishing attacks. Combined with the fully effective Part 500 amendment and a record enforcement run, targeted social-engineering training is now a supervisory expectation in New York.

Rachel Andersen·8/24/2026·5 min read
Financial services professionals reviewing digital operational resilience requirements in a meeting
Compliance & Regulations

DORA: Security Awareness and Training Requirements

DORA is best known for ICT risk and incident reporting, but it also makes security awareness training a compulsory module for staff and management. Here is what financial entities must do, and how to evidence it.

Sarah Mitchell·7/8/2026·6 min read