Compliance & Security, GDPR

EmailLabs’ Compliance with DORA and NIS2 – Top-Level Security for Your Communication

Natalia Zacholska,  Published on: 4 February 2025

nis2-dora

EmailLabs, as part of the Vercom group, proudly announces its full commitment to aligning its ICT services with the latest cybersecurity standards. In response to dynamically changing regulations, the company is actively implementing a series of measures to ensure full compliance with applicable legal requirements. This applies in particular to:

  • DORA regulation (2022/2554)
  • NIS2 directive (2022/2555), which will be transposed into Polish national law through an amendment to the National Cybersecurity System Act (NCSSA).

About DORA and NIS2

DORA (Digital Operational Resilience Act)

A regulation of the European Parliament and the Council (EU) aimed at strengthening the digital resilience of the financial sector. It imposes requirements on financial institutions and their ICT providers regarding ICT risk management, resilience testing, and incident reporting.

NIS2 (Network and Information Security Directive 2)

The NIS2 directive aims to enhance cybersecurity across the European Union. It imposes requirements on entities from various sectors (including digital service providers) regarding cyber risk management, incident reporting, and cooperation with national authorities.

Security First

At EmailLabs, security is a top priority. Given the NIS2 and DORA requirements applicable to our clients, we are implementing a series of measures to ensure the highest level of protection for our services, including:

  • Compliance with ISO 27001, ISO 22301, and ISO 27018: Ensuring the security of EmailLabs’ information systems through compliance with these standards.
  • Cybersecurity risk management: Identifying, analyzing, and mitigating risks related to ICT security.
  • Incident and vulnerability management: Responding to threats and monitoring potential security gaps.
  • Continuous monitoring: Conducting regular internal and external penetration tests to identify and eliminate vulnerabilities.
  • Cryptographic security: Implementing modern encryption methods and data protection measures.
  • Access management and human resource security: Enforcing strict access control procedures for critical systems.
  • Business continuity plans: Ensuring uninterrupted availability of EmailLabs services.
  • Service Level Agreements (SLAs): Providing defined availability and reliability parameters.
  • Cybersecurity training: Regularly educating employees on cyber hygiene and security awareness.

DORA Compliance: Contract Addendum

Following the best recommendations from the Polish Bank Association (ZBP), we have developed a template addendum to our EmailLabs service agreements to facilitate quick and easy compliance with DORA. The template is available on our website. If customers have additional requirements, we are ready to tailor the addendum to meet their expectations.

If you would like to sign the addendum, talk to our sales representative to discuss the details. Email us: [email protected].

Our Commitment

Through these measures, we ensure that our customers benefit from EmailLabs services that meet the highest security standards and comply with all applicable regulations. We are ready for further adjustments and collaboration to meet any regulatory requirements.

If you have any questions or need to adapt the contract to more specific requirements, we are open to collaborate to develop the optimal solution.

Create an EmailLabs account today

We always treat data security with the highest priority!

Most popular

Latest blog posts