Ariadnah
Platform
DORA Understand the responsibilities, common operating gaps, and the path from shared knowledge to evidence. AML & KYC Customer due diligence with the ownership look-through resolved as data. Risk & Control One control catalogue, read through every framework it answers to. Governance & Policies Policies drafted, mapped to requirements clause by clause, and approved in the platform.

Platform

  • Platform overview
  • AI assistant
  • Security & trust
  • Impact & access

Domains and services

  • Register of Information
  • Suppliers & Contracts
  • Asset Management
  • Risk & Control
  • AML & KYC
  • AIFMD Reporting
  • Fund Administration
  • Trust & Investor Portal
  • Governance & Policies
  • Incident Management
  • All solutions →

By sector

  • Banking
  • (Re)Insurance
  • Investment Firms
  • Investment Management
  • Payment Institutions
  • Pension Funds
  • Crypto Services
  • All sectors →
About Pricing Insights Resources Contact
Book a Discovery Call
Home About Platform Solutions Sectors Pricing Insights Resources DORA Guide NIS2 Guide Contact
Book a Discovery Call
Insights

How the Dutch Association of Insurers supports DORA implementation

Ariadnah Solutions DORA 23 Jul 2025 2 min read

The Digital Operational Resilience Act (DORA) has a significant impact on the insurance sector. Insurers must comply with this new European regulation by January 17, 2025. In practice, insurers are working hard to meet these requirements.

01

Practical support from the association

The Dutch Association of Insurers has launched several initiatives to help insurers implement DORA effectively.

One key initiative is the development of DORA clauses for IT supplier contracts. These standardized clauses were created in collaboration with DUFAS, the Pension Federation, and other industry bodies. They help ensure contracts meet DORA compliance requirements.

Additionally, the Association:

  • Hosts webinars to encourage knowledge sharing
  • Provides platforms for insurers to exchange experiences
  • Acts as a liaison with the Dutch Central Bank (DNB) to streamline communication between the sector and the regulator

02

Valuable industry insights

The Association shares practical DORA implementation insights through expert interviews and articles. Here are a few highlights:

Tips from EY's cybersecurity expert

In the article “DORA Implementation: Tips from Rudrani Djwalapersad”, EY’s Partner highlights four priorities:

  • Focus on must-haves like the Register of Information
  • Document your non-gaps (where you already comply)
  • Build a realistic roadmap for closing gaps—even beyond the deadline

DNB’s vision on DORA

In “5 Questions about DORA to DNB”, Marcel Verhoeven emphasizes:

  • Performing thorough gap analyses
  • Ensuring board-level accountability
  • Managing outsourcing risks
  • Establishing IT continuity measures

European impact

The article “Europe and the Impact of DORA Legislation” features Martin van Vessem, chair of the Insurance-ISAC. He stresses that DORA is a sector-wide challenge and urges collaboration: “You can only keep the bad guys out if you work well together.”

Legal perspective

In “5 Questions about DORA”, Anne-Mieke Dumoulin-Siemens explains the importance of conducting a gap analysis: “Insurers are already expected to comply with certain security frameworks.”

Cyber testing and DORA

In “Rob Wassink (DNB) on Cyber Testing”, the importance of TIBER tests is emphasized as a key part of ensuring digital resilience under DORA.

03

Working together toward compliance

These examples show how the Dutch Association of Insurers is supporting the sector in a practical, collaborative way. From standardized contract language to direct engagement with DNB, their efforts are helping insurers tackle DORA’s complex requirements.


Discover how our solutions can help simplify DORA compliance or Contact us

Originally published on DORA Solutions Insights.

Continue with DORA

Put this question in context.

The DORA guide connects this issue to governance, ICT risk, incidents, resilience testing, third-party risk and the Register of Information.

Recommended next Read the DORA compliance guide →
Explore the operating approach Explore Ariadnah solutions Related analysis Who Reads the Register? Related analysis DORA for Microenterprises: Why size matters for your compliance journey
Manage Consent
We use cookies to keep this site reliable and to understand how it is used. You can accept, deny, or adjust your preferences at any time.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Ariadnah

Compliance advisory & technology

Regulatory specialists and technology that help organisations simplify compliance, strengthen operational resilience, and build lasting trust.

ISO/IEC 27001 certified (DNV)

Platform

  • Platform Overview
  • DORA Guide
  • NIS2 Guide
  • Regulatory Library
  • Register of Information
  • Risk & Control
  • Governance & Policies
  • Incident Management
  • Asset Management
  • Suppliers & Contracts
  • AML & KYC
  • AIFMD Reporting
  • Fund Administration
  • Trust & Investor Portal
  • AI
  • Security

Sectors

  • Banking
  • (Re)Insurance
  • Investment Firms
  • Investment Management
  • Payment Institutions
  • Pension Funds
  • Crypto Services

Company

  • About Ariadnah
  • Pricing
  • Our Experts
  • Impact
  • FAQ
  • Insights
  • Contact

Legal

  • General Terms
  • Data & Privacy
  • Cookie Policy
  • Accessibility

© 2026 Ariadnah Solutions B.V.