Go offline with the Player FM app!
DORA, Risk, and Resilience: What Carriers, MSPs, and MSSPs Need to Know Now, Supply Wisdom Podcast
Manage episode 482271514 series 2674324
DORA, Risk, and Resilience: What Carriers, MSPs, and MSSPs Need to Know Now, “DORA, Risk, and Resilience: What Carriers, MSPs, and MSSPs Need to Know Now”
“You can outsource the function — but you can never outsource the risk.” That’s the stark reminder from Jenna Wells of Supply Wisdom, who joins Technology Reseller News Publisher Doug Green for a timely and wide-ranging conversation on the Digital Operational Resilience Act (DORA). Though it’s an EU regulation, DORA’s scope reaches far beyond Europe, impacting financial institutions, carriers, MSPs, MSSPs, and enterprises worldwide.
Now in effect since January 2025, DORA requires firms to actively monitor and manage their third-party information and communications technology (ICT) providers — vendors that store, create, or share data. That’s a tall order in a hyper-connected world where cloud services, telecom carriers, and AI infrastructure are interwoven into every business process.
Wells explains that DORA compliance begins with full visibility into your outsourced ecosystem. Organizations must first identify their entire vendor population, then drill down to understand which of those suppliers are truly critical. From there, they must implement continuous monitoring — not just annual risk reviews — and prepare robust backup plans to ensure operational continuity if a vendor falters.
The implications for carriers and MSPs are particularly acute. These organizations are linchpins of global communications and critical infrastructure — and often rely on their own layers of third-party vendors. Wells stresses that identifying service concentration risks, establishing redundancies, and planning for hot rollovers are essential steps to avoid costly downtime and regulatory exposure.
Drawing on her experience managing third-party risk at Iron Mountain, Wells underscores how tools like Supply Wisdom can simplify the path to compliance. By automating risk monitoring and surfacing early warning signs of disruption, organizations not only stay ahead of regulation — they gain a powerful competitive edge.
With enforcement timelines progressing, Wells offers a clear message: DORA compliance is no longer a future issue. It’s here. And those who act now will be better protected, more resilient, and more trusted by their customers and partners.
Learn more: https://www.supplywisdom.com
52 episodes
Manage episode 482271514 series 2674324
DORA, Risk, and Resilience: What Carriers, MSPs, and MSSPs Need to Know Now, “DORA, Risk, and Resilience: What Carriers, MSPs, and MSSPs Need to Know Now”
“You can outsource the function — but you can never outsource the risk.” That’s the stark reminder from Jenna Wells of Supply Wisdom, who joins Technology Reseller News Publisher Doug Green for a timely and wide-ranging conversation on the Digital Operational Resilience Act (DORA). Though it’s an EU regulation, DORA’s scope reaches far beyond Europe, impacting financial institutions, carriers, MSPs, MSSPs, and enterprises worldwide.
Now in effect since January 2025, DORA requires firms to actively monitor and manage their third-party information and communications technology (ICT) providers — vendors that store, create, or share data. That’s a tall order in a hyper-connected world where cloud services, telecom carriers, and AI infrastructure are interwoven into every business process.
Wells explains that DORA compliance begins with full visibility into your outsourced ecosystem. Organizations must first identify their entire vendor population, then drill down to understand which of those suppliers are truly critical. From there, they must implement continuous monitoring — not just annual risk reviews — and prepare robust backup plans to ensure operational continuity if a vendor falters.
The implications for carriers and MSPs are particularly acute. These organizations are linchpins of global communications and critical infrastructure — and often rely on their own layers of third-party vendors. Wells stresses that identifying service concentration risks, establishing redundancies, and planning for hot rollovers are essential steps to avoid costly downtime and regulatory exposure.
Drawing on her experience managing third-party risk at Iron Mountain, Wells underscores how tools like Supply Wisdom can simplify the path to compliance. By automating risk monitoring and surfacing early warning signs of disruption, organizations not only stay ahead of regulation — they gain a powerful competitive edge.
With enforcement timelines progressing, Wells offers a clear message: DORA compliance is no longer a future issue. It’s here. And those who act now will be better protected, more resilient, and more trusted by their customers and partners.
Learn more: https://www.supplywisdom.com
52 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.