9th MaRisk Amendment and DORA: Digital Resilience Becomes a Board-Level Responsibility
The draft of the 9th MaRisk amendment systematically integrates the requirements of DORA into the existing MaRisk governance framework without creating a separate national regime. As a result, digital operational resilience is becoming a core management responsibility: ICT risks are no longer viewed solely as an IT security issue but as part of overall bank management, risk strategy, and institution-wide governance.