{"id":3219,"date":"2025-10-28T14:52:22","date_gmt":"2025-10-28T14:52:22","guid":{"rendered":"https:\/\/phishia.fr\/?p=3219"},"modified":"2025-10-31T08:09:07","modified_gmt":"2025-10-31T08:09:07","slug":"nis2-dora-obblighi-ue","status":"publish","type":"post","link":"https:\/\/phishia.fr\/it\/blog\/gestione-della-conformita\/nis2-dora-obblighi-ue\/","title":{"rendered":"NIS2 e DORA: obblighi dell'UE, differenze chiave, tabella di marcia concreta"},"content":{"rendered":"<h2>Perch\u00e9 si parla tanto di NIS2 e DORA?<\/h2>\n<p data-start=\"193\" data-end=\"335\">Due testi europei, due obiettivi correlati: <strong data-start=\"241\" data-end=\"287\">ridurre l'impatto degli incidenti digitali<\/strong> e <strong data-start=\"291\" data-end=\"332\">rendere le organizzazioni controllabili<\/strong>.<\/p>\n<ul data-start=\"336\" data-end=\"547\">\n<li data-start=\"336\" data-end=\"468\">\n<p data-start=\"338\" data-end=\"468\"><strong data-start=\"338\" data-end=\"346\">NIS2<\/strong> si rivolge a settori \u00abessenziali\u00bb e \u00abimportanti\u00bb (energia, sanit\u00e0, trasporti, acqua, digitale, servizi pubblici, ecc.).<\/p>\n<\/li>\n<li data-start=\"469\" data-end=\"547\">\n<p data-start=\"471\" data-end=\"547\"><strong data-start=\"471\" data-end=\"479\">DORA<\/strong> si rivolge al <strong data-start=\"489\" data-end=\"510\">settore finanziario<\/strong> e i suoi fornitori di TIC critici.<\/p>\n<\/li>\n<\/ul>\n<p data-start=\"549\" data-end=\"735\">In entrambi i casi: governance a livello dirigenziale, gestione del rischio, preparazione agli incidenti, <strong data-start=\"654\" data-end=\"665\">prove<\/strong>disponibile... e <strong data-start=\"686\" data-end=\"703\">scadenze\/formato<\/strong> notifica da parte delle autorit\u00e0.<\/p>\n<h2>NIS2 in breve (cosa si aspetta da voi l'autorit\u00e0)<\/h2>\n<ul data-start=\"864\" data-end=\"1505\">\n<li data-start=\"864\" data-end=\"984\">\n<p data-start=\"866\" data-end=\"984\"><strong data-start=\"866\" data-end=\"888\">Chi \u00e8 interessato?<\/strong> Entit\u00e0 \u00abessenziali\u00bb con <strong>50+ dipendenti\u00a0<\/strong>o\u00a0<strong>+10M di fatturato.<\/strong><\/p>\n<\/li>\n<li data-start=\"985\" data-end=\"1337\">\n<p data-start=\"987\" data-end=\"1018\"><strong data-start=\"987\" data-end=\"1016\">Cosa deve essere dimostrato :<\/strong><\/p>\n<ol data-start=\"1021\" data-end=\"1337\">\n<li data-start=\"1021\" data-end=\"1088\">\n<p data-start=\"1024\" data-end=\"1088\"><strong data-start=\"1024\" data-end=\"1039\">La governance<\/strong> con esplicita responsabilit\u00e0 gestionale.<\/p>\n<\/li>\n<li data-start=\"1091\" data-end=\"1151\">\n<p data-start=\"1094\" data-end=\"1151\"><strong data-start=\"1094\" data-end=\"1117\">Gestione del rischio<\/strong> (tra cui <strong data-start=\"1131\" data-end=\"1147\">catena di fornitura<\/strong>).<\/p>\n<\/li>\n<li data-start=\"1154\" data-end=\"1217\">\n<p data-start=\"1157\" data-end=\"1217\"><strong data-start=\"1157\" data-end=\"1181\">Continuit\u00e0 e risposta<\/strong> procedure, esercizi, prove.<\/p>\n<\/li>\n<li data-start=\"1220\" data-end=\"1337\">\n<p data-start=\"1223\" data-end=\"1337\"><strong data-start=\"1223\" data-end=\"1250\">Notifica dell'incidente<\/strong> in <strong data-start=\"1260\" data-end=\"1279\">scadenze controllate<\/strong> (allarme precoce, notifica entro 72 ore, rapporto finale).<\/p>\n<\/li>\n<\/ol>\n<\/li>\n<li data-start=\"1338\" data-end=\"1505\">\n<p data-start=\"1340\" data-end=\"1505\"><strong data-start=\"1340\" data-end=\"1372\">Modifiche giornaliere :<\/strong> decisioni tracciate, requisiti formalizzati per i fornitori, messaggi pronti per la segnalazione di un incidente, possibili controlli da parte dell'autorit\u00e0 (multe salate in caso di non conformit\u00e0).<\/p>\n<\/li>\n<\/ul>\n<h2>DORA in breve (finanza)<\/h2>\n<ul>\n<li data-start=\"1617\" data-end=\"1750\">\n<p data-start=\"1619\" data-end=\"1750\"><strong data-start=\"1619\" data-end=\"1641\">Chi \u00e8 interessato?<\/strong> Banche, compagnie di assicurazione, societ\u00e0 d'investimento, entit\u00e0 collegate... e alcuni <strong data-start=\"1717\" data-end=\"1737\">Fornitori di servizi ICT<\/strong> recensioni.<\/p>\n<\/li>\n<li data-start=\"1751\" data-end=\"2117\">\n<p data-start=\"1753\" data-end=\"1784\"><strong data-start=\"1753\" data-end=\"1782\">Cosa deve essere dimostrato :<\/strong><\/p>\n<ol data-start=\"1787\" data-end=\"2117\">\n<li data-start=\"1787\" data-end=\"1836\">\n<p data-start=\"1790\" data-end=\"1836\"><strong data-start=\"1790\" data-end=\"1809\">Governance delle TIC<\/strong> dalla direzione.<\/p>\n<\/li>\n<li data-start=\"1839\" data-end=\"1925\">\n<p data-start=\"1842\" data-end=\"1925\"><strong data-start=\"1842\" data-end=\"1867\">Gestione degli incidenti<\/strong> con <strong data-start=\"1873\" data-end=\"1896\">rendicontazione armonizzata<\/strong> alle autorit\u00e0 finanziarie.<\/p>\n<\/li>\n<li data-start=\"1928\" data-end=\"1995\">\n<p data-start=\"1931\" data-end=\"1995\"><strong data-start=\"1931\" data-end=\"1944\">TIC di terze parti<\/strong> registro, clausole, monitoraggio, strategia di uscita.<\/p>\n<\/li>\n<li data-start=\"1998\" data-end=\"2069\">\n<p data-start=\"2001\" data-end=\"2069\"><strong data-start=\"2001\" data-end=\"2024\">Test di resilienza<\/strong> (fino a scenari avanzati).<\/p>\n<\/li>\n<li data-start=\"2072\" data-end=\"2117\">\n<p data-start=\"2075\" data-end=\"2117\"><strong data-start=\"2075\" data-end=\"2089\">Continuit\u00e0<\/strong> e comunicazione di crisi.<\/p>\n<\/li>\n<\/ol>\n<\/li>\n<li data-start=\"2118\" data-end=\"2282\">\n<p data-start=\"2120\" data-end=\"2282\"><strong data-start=\"2120\" data-end=\"2152\">Modifiche giornaliere :<\/strong> formati e canali <strong data-start=\"2174\" data-end=\"2187\">segnalazione<\/strong> definiti, rapporti contrattuali con i fornitori, programma di test ed esercitazioni.<\/p>\n<\/li>\n<\/ul>\n<h2>NIS2 vs DORA: stesse basi, accenti diversi<\/h2>\n<table style=\"caret-color: #000000; color: #000000;\">\n<thead>\n<tr>\n<th>Tema<\/th>\n<th>NIS2<\/th>\n<th>DORA<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>Natura<\/td>\n<td>Direttiva sui settori essenziali\/importanti\u00ab<\/td>\n<td>Regolamenti finanziari (applicabili cos\u00ec come sono)<\/td>\n<\/tr>\n<tr>\n<td>Gestione<\/td>\n<td>Ruolo esplicito, decisioni tracciabili<\/td>\n<td>Idem, + responsabilit\u00e0 per la governance delle TIC<\/td>\n<\/tr>\n<tr>\n<td>Incidenti<\/td>\n<td>Allarme precoce, notifica, rapporto finale<\/td>\n<td>Reporting armonizzato + possibilit\u00e0 di scadenze brevi<\/td>\n<\/tr>\n<tr>\n<td>Terza parte<\/td>\n<td>Requisiti dei fornitori e della catena di fornitura<\/td>\n<td><strong>Fornitori di servizi ICT<\/strong>\u00a0forte contrattualizzazione e uscita<\/td>\n<\/tr>\n<tr>\n<td>Test<\/td>\n<td>Esercizi regolari (IR\/BCP)<\/td>\n<td><strong>Test di resilienza<\/strong>\u00a0strutturati, compresi quelli avanzati<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong data-start=\"2891\" data-end=\"2908\">In pratica:<\/strong> a <strong data-start=\"2912\" data-end=\"2930\">ISMS strutturato<\/strong> (come la ISO 27001) coprono la maggior parte del terreno; noi aggiungiamo i mattoni <strong data-start=\"3000\" data-end=\"3020\">scadenze\/rapporti<\/strong> e il <strong data-start=\"3027\" data-end=\"3043\">strato di terze parti<\/strong> specifico di NIS2\/DORA.<\/p>\n<h2>Come prepararsi in modo intelligente (senza duplicare il lavoro)<\/h2>\n<p><strong>Stato e ambito di applicazione<\/strong><\/p>\n<p data-start=\"3171\" data-end=\"3310\">Verificare se\/cosa si applica, mappare le attivit\u00e0, gli enti e i fornitori interessati, identificare l'autorit\u00e0 competente (e i suoi formati).<\/p>\n<p><strong>Governance e prove<\/strong><\/p>\n<p data-start=\"3341\" data-end=\"3481\">Nominare i manager, documentare <strong data-start=\"3377\" data-end=\"3388\">come<\/strong> Le decisioni che vengono prese, vengono registrate e vengono segnate le tappe fondamentali. <strong data-start=\"3458\" data-end=\"3480\">periodici<\/strong>.<\/p>\n<p data-start=\"3341\" data-end=\"3481\"><strong>Incidenti e comunicazione<\/strong><\/p>\n<p data-start=\"3516\" data-end=\"3662\">Scrivere il <strong data-start=\"3526\" data-end=\"3543\">istruzioni per l'uso<\/strong> rilevamento, qualificazione, chi avvisa chi, modelli di messaggio, canali di consegna, <strong data-start=\"3624\" data-end=\"3646\">orologio a tempo<\/strong>, sessioni di formazione.<\/p>\n<p data-start=\"3516\" data-end=\"3662\"><strong>Terzi e contratti<\/strong><\/p>\n<p data-start=\"3688\" data-end=\"3877\">Segmentare i fornitori in base alla criticit\u00e0, definire la <strong data-start=\"3742\" data-end=\"3765\">requisiti minimi<\/strong>, integrazione <strong data-start=\"3780\" data-end=\"3791\">clausole<\/strong> (notifica, audit, sicurezza, piano di uscita), e introdurre una <strong data-start=\"3858\" data-end=\"3867\">follow-up<\/strong> regolare.<\/p>\n<p data-start=\"3688\" data-end=\"3877\"><strong>Continuit\u00e0 e test<\/strong><\/p>\n<p>Piano B realistico, esercizi, <strong data-start=\"3933\" data-end=\"3956\">test di resilienza<\/strong> (pi\u00f9 avanzato in DORA), registrando i risultati e le decisioni prese.<\/p>\n<h2>Conclusione<\/h2>\n<p>NIS2 e DORA non sono tanto delle promesse, quanto piuttosto delle <strong data-start=\"5549\" data-end=\"5560\">prove<\/strong> Gli elementi chiave sono: governance chiara, incidenti gestiti e segnalati in tempo, terze parti sotto controllo, continuit\u00e0 testata. Con una <strong data-start=\"5690\" data-end=\"5703\">ISO 27001<\/strong> e un aggiornamento su <strong data-start=\"5729\" data-end=\"5755\">scadenze\/rapporti\/livelli<\/strong>, Siete pronti... anche il giorno dell'esame.<\/p>\n<p>Volete un <strong data-start=\"5827\" data-end=\"5857\">Test in bianco NIS2\/DORA<\/strong> e una tabella di marcia con le priorit\u00e0? Parliamone.<\/p>","protected":false},"excerpt":{"rendered":"<p>Pourquoi on parle autant de NIS2 et DORA Deux textes europ\u00e9ens, deux objectifs voisins : r\u00e9duire les impacts d\u2019incidents num\u00e9riques et rendre les organisations contr\u00f4lables. NIS2 vise les secteurs \u00ab essentiels \u00bb et \u00ab importants \u00bb (\u00e9nergie, sant\u00e9, transports, eau, num\u00e9rique, administrations, etc.). DORA cible le secteur financier et ses prestataires TIC critiques. Dans les [&hellip;]<\/p>","protected":false},"author":3,"featured_media":3224,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[22],"tags":[],"class_list":["post-3219","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-pilotage-conformite"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>NIS2 &amp; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te - Phishia<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/phishia.fr\/it\/blog\/gestione-della-conformita\/nis2-dora-obblighi-ue\/\" \/>\n<meta property=\"og:locale\" content=\"it_IT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"NIS2 &amp; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te - Phishia\" \/>\n<meta property=\"og:description\" content=\"Pourquoi on parle autant de NIS2 et DORA Deux textes europ\u00e9ens, deux objectifs voisins : r\u00e9duire les impacts d\u2019incidents num\u00e9riques et rendre les organisations contr\u00f4lables. NIS2 vise les secteurs \u00ab essentiels \u00bb et \u00ab importants \u00bb (\u00e9nergie, sant\u00e9, transports, eau, num\u00e9rique, administrations, etc.). DORA cible le secteur financier et ses prestataires TIC critiques. Dans les [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/phishia.fr\/it\/blog\/gestione-della-conformita\/nis2-dora-obblighi-ue\/\" \/>\n<meta property=\"og:site_name\" content=\"Phishia\" \/>\n<meta property=\"article:published_time\" content=\"2025-10-28T14:52:22+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-10-31T08:09:07+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1536\" \/>\n\t<meta property=\"og:image:height\" content=\"864\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Scritto da\" \/>\n\t<meta name=\"twitter:data1\" content=\"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tempo di lettura stimato\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minuti\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/\"},\"author\":{\"name\":\"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/#\\\/schema\\\/person\\\/ab1f38ad06f750da69863e8f06e86528\"},\"headline\":\"NIS2 &#038; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te\",\"datePublished\":\"2025-10-28T14:52:22+00:00\",\"dateModified\":\"2025-10-31T08:09:07+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/\"},\"wordCount\":611,\"publisher\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/nis2-dora.png\",\"articleSection\":[\"Pilotage et conformit\u00e9\"],\"inLanguage\":\"it-IT\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/\",\"url\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/\",\"name\":\"NIS2 & DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te - Phishia\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/nis2-dora.png\",\"datePublished\":\"2025-10-28T14:52:22+00:00\",\"dateModified\":\"2025-10-31T08:09:07+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#breadcrumb\"},\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#primaryimage\",\"url\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/nis2-dora.png\",\"contentUrl\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/nis2-dora.png\",\"width\":1536,\"height\":864},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/pilotage-conformite\\\/nis2-dora-obligations-ue\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\\\/\\\/phishia.fr\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Pilotage et conformit\u00e9\",\"item\":\"https:\\\/\\\/phishia.fr\\\/blog\\\/category\\\/pilotage-conformite\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"NIS2 &#038; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/#website\",\"url\":\"https:\\\/\\\/phishia.fr\\\/\",\"name\":\"Phishia\",\"description\":\"Cabinet de Conseil IT, Cybers\u00e9curit\u00e9, Durabilit\u00e9\",\"publisher\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/phishia.fr\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"it-IT\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/#organization\",\"name\":\"Phishia\",\"url\":\"https:\\\/\\\/phishia.fr\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/01\\\/Logotype.png\",\"contentUrl\":\"https:\\\/\\\/phishia.fr\\\/wp-content\\\/uploads\\\/2025\\\/01\\\/Logotype.png\",\"width\":512,\"height\":128,\"caption\":\"Phishia\"},\"image\":{\"@id\":\"https:\\\/\\\/phishia.fr\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/company\\\/phishia\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/phishia.fr\\\/#\\\/schema\\\/person\\\/ab1f38ad06f750da69863e8f06e86528\",\"name\":\"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"NIS2 e DORA: obblighi dell'UE, differenze chiave, tabella di marcia concreta - Phishia","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/phishia.fr\/it\/blog\/gestione-della-conformita\/nis2-dora-obblighi-ue\/","og_locale":"it_IT","og_type":"article","og_title":"NIS2 & DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te - Phishia","og_description":"Pourquoi on parle autant de NIS2 et DORA Deux textes europ\u00e9ens, deux objectifs voisins : r\u00e9duire les impacts d\u2019incidents num\u00e9riques et rendre les organisations contr\u00f4lables. NIS2 vise les secteurs \u00ab essentiels \u00bb et \u00ab importants \u00bb (\u00e9nergie, sant\u00e9, transports, eau, num\u00e9rique, administrations, etc.). DORA cible le secteur financier et ses prestataires TIC critiques. Dans les [&hellip;]","og_url":"https:\/\/phishia.fr\/it\/blog\/gestione-della-conformita\/nis2-dora-obblighi-ue\/","og_site_name":"Phishia","article_published_time":"2025-10-28T14:52:22+00:00","article_modified_time":"2025-10-31T08:09:07+00:00","og_image":[{"width":1536,"height":864,"url":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png","type":"image\/png"}],"author":"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9","twitter_card":"summary_large_image","twitter_misc":{"Scritto da":"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9","Tempo di lettura stimato":"3 minuti"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#article","isPartOf":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/"},"author":{"name":"Enzo Debosque, consultant junior en CyberS\u00e9curit\u00e9","@id":"https:\/\/phishia.fr\/#\/schema\/person\/ab1f38ad06f750da69863e8f06e86528"},"headline":"NIS2 &#038; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te","datePublished":"2025-10-28T14:52:22+00:00","dateModified":"2025-10-31T08:09:07+00:00","mainEntityOfPage":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/"},"wordCount":611,"publisher":{"@id":"https:\/\/phishia.fr\/#organization"},"image":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#primaryimage"},"thumbnailUrl":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png","articleSection":["Pilotage et conformit\u00e9"],"inLanguage":"it-IT"},{"@type":"WebPage","@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/","url":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/","name":"NIS2 e DORA: obblighi dell'UE, differenze chiave, tabella di marcia concreta - Phishia","isPartOf":{"@id":"https:\/\/phishia.fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#primaryimage"},"image":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#primaryimage"},"thumbnailUrl":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png","datePublished":"2025-10-28T14:52:22+00:00","dateModified":"2025-10-31T08:09:07+00:00","breadcrumb":{"@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#breadcrumb"},"inLanguage":"it-IT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/"]}]},{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#primaryimage","url":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png","contentUrl":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/10\/nis2-dora.png","width":1536,"height":864},{"@type":"BreadcrumbList","@id":"https:\/\/phishia.fr\/blog\/pilotage-conformite\/nis2-dora-obligations-ue\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/phishia.fr\/"},{"@type":"ListItem","position":2,"name":"Pilotage et conformit\u00e9","item":"https:\/\/phishia.fr\/blog\/category\/pilotage-conformite\/"},{"@type":"ListItem","position":3,"name":"NIS2 &#038; DORA : obligations UE, diff\u00e9rences cl\u00e9s, feuille de route concr\u00e8te"}]},{"@type":"WebSite","@id":"https:\/\/phishia.fr\/#website","url":"https:\/\/phishia.fr\/","name":"Phishia","description":"Consulenza informatica, sicurezza informatica, sostenibilit\u00e0","publisher":{"@id":"https:\/\/phishia.fr\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/phishia.fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"it-IT"},{"@type":"Organization","@id":"https:\/\/phishia.fr\/#organization","name":"Phishia","url":"https:\/\/phishia.fr\/","logo":{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/phishia.fr\/#\/schema\/logo\/image\/","url":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/01\/Logotype.png","contentUrl":"https:\/\/phishia.fr\/wp-content\/uploads\/2025\/01\/Logotype.png","width":512,"height":128,"caption":"Phishia"},"image":{"@id":"https:\/\/phishia.fr\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.linkedin.com\/company\/phishia\/"]},{"@type":"Person","@id":"https:\/\/phishia.fr\/#\/schema\/person\/ab1f38ad06f750da69863e8f06e86528","name":"Enzo Debosque, consulente junior di CyberSecurity"}]}},"_links":{"self":[{"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/posts\/3219","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/comments?post=3219"}],"version-history":[{"count":5,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/posts\/3219\/revisions"}],"predecessor-version":[{"id":3342,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/posts\/3219\/revisions\/3342"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/media\/3224"}],"wp:attachment":[{"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/media?parent=3219"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/categories?post=3219"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/phishia.fr\/it\/wp-json\/wp\/v2\/tags?post=3219"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}