{"id":4448,"date":"2023-12-05T08:00:00","date_gmt":"2023-12-05T08:00:00","guid":{"rendered":"http:\/\/www.sumologic.com\/blog\/aws-observability-dora-regulations"},"modified":"2025-05-21T07:44:14","modified_gmt":"2025-05-21T15:44:14","slug":"aws-observability-dora-regulations","status":"publish","type":"blog","link":"https:\/\/www.sumologic.com\/blog\/aws-observability-dora-regulations","title":{"rendered":"How fintech companies can prepare for new DORA regulations"},"content":{"rendered":"\n<section class=\"e-stn e-stn-0d652506f82b000a392973813b918ee25d5b4211 e-stn--glossary-inner-content e-stn--table-of-content\"><div class=\"container\">\n<div class=\"wp-block-b3rg-row e-row row\">\n<div class=\"wp-block-b3rg-column e-col e-col-1f7b3997080fc292474d26ff00c905d99d3520fa e-col--content-wrapper  col-sm-12 col-lg-12 col-xl-12\">\n<div class=\"e-div e-div-a1b32f66e1749758df41d5aea14f647cd10e362c e-div--card-btn-link\"><div class=\"e-img \">\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1400\" height=\"400\" src=\"http:\/\/www.sumologic.com\/wp-content\/uploads\/Snoop_blog_700x200-1.png\" alt=\"Snoop | Sumo Logic | AWS\" class=\"wp-image-4447\" title=\"\"><\/figure>\n<\/div>\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-190c051facb6c8a1bac3c4a1d05854d2\"><br><\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-37a9dc2610cea112cc7e5e80123d2493\">The clock is ticking for financial services companies that operate in the European Union (EU). Starting in January 2025, financial services providers and their third-party technology service providers must meet the new regulatory requirements of the <a href=\"https:\/\/www.digital-operational-resilience-act.com\/\" target=\"_blank\" rel=\"noopener\">Digital Operational Resilience Act <\/a>(DORA). <\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-f3b8f7185012392d67dbe6104d15e3d2\">As the financial services industry modernizes and moves away from legacy technology, cloud adoption presents new risks and vulnerabilities to cyber threats and attacks that require a comprehensive information and communication technology (ICT) risk management framework\u2013\u2013namely, <a href=\"https:\/\/www.sumologic.com\/glossary\/dora-metrics\/\">DORA<\/a>. DORA will require financial services to embed so-called digital resilience on all levels of their operations based on six pillars:<br><\/p>\n\n\n\n<ul>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-0c07b30a5f15e6cc1589c10480c226b8\">Governance and organization<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-f3581d68a9137ad5992803d1d23d314f\">ICT risk management framework<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-09635144fd1ce1674f6bf0b218554924\">ICT incident management, classification and reporting<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-5d3c41f7f957e41c480acef239210dfb\">Digital operational resilience testing<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-050d56547159cde10b370e860a772f4f\">Third-party provider risk management<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-81a969620e9c4e4679744ede6b95b98b\">Information sharing<\/p>\n\n\n\n<\/li>\n<\/ul>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-e5e8485dae4e722ce99aee8efcfb4a4c\">DORA is focused not only on cyber threats and attacks \u2014 but also on resiliency and reliability that can make or break customer experience. That&#8217;s why <a href=\"https:\/\/www.sumologic.com\/glossary\/observability\/\">observability<\/a> is increasingly important for fintech companies.<\/p>\n\n\n\n<h2 class=\"wp-block-heading has-eigengrau-color has-text-color has-link-color wp-elements-b8c518f0a46fab11320694f004249551\" id=\"what_to_look_for_in_an_observability_solution\">What to look for in an observability solution<\/h2>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-6b49f03b2721724253ef5f5c595217c0\">Like many other businesses, financial services companies rely on complex and mission-critical software systems to provide services to their customers. When evaluating observability solutions, financial services companies should consider several features to ensure they choose the right solution for their specific needs:<br><\/p>\n\n\n\n<ul>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-1497e84f2e201ab6839d932e28c50616\">Ease of data collection from a range of sources, including logs, metrics and other <a href=\"https:\/\/www.sumologic.com\/glossary\/telemetry\/\">telemetry<\/a> data<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-0f51affbc728b3944db49e2ac7297886\">Integration with the specific technologies and platforms used in financial services, such as databases, cloud services and trading platforms<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-ddd197af443f228a68d7e3cfe131e8e2\">Capable of handling large volumes of data and scaling as needed<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-6313a53aec61c909357d1da9562ebf6d\">Provides real-time insights into system performance and issues<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-423ebd39131ad073f4bd49ebc2b7230f\">Defines and tracks custom metrics and creates alerts based on specific business and technical criteria<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-e5c2d865883d7880dfcebef088d8eee5\">Anomaly detection to identify unexpected patterns or deviations in data<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-3384df5d7592de8b1ec50947e0f13514\">Complies with industry-specific regulations and offers security features such as data encryption, access controls and audit trails<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-e5cd22e9c3e8190ef79a7c800b6ced11\">Long-term observability data storage for trend analysis, compliance and forensic investigations<\/p>\n\n\n\n<\/li>\n<li dir=\"ltr\">\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-7bec8596817486f2e07364eae4c984bb\">Supports redundant deployments and data backup for disaster recovery<\/p>\n\n\n\n<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading has-eigengrau-color has-text-color has-link-color wp-elements-3ba4d8389c0e018774ba6cc8d710db89\" id=\"how_a_serverless_fintech_startup_ensures_reliability_with_sumo_logic\">How a serverless fintech startup ensures reliability with Sumo Logic<\/h2>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-a95008aa51704abc59afda0371171ae5\">With reliability and performance concerns at the top of their minds, fintech organizations like cloud-native startup Snoop increasingly need an observability solution to cut through the noise and simplify troubleshooting.<\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-dba1323354c598ef8bd0c31130bb3f0d\">Snoop was built using a serverless-first architecture that includes an extensive Amazon Web Services (AWS) tech stack, along with fourteen other <a href=\"https:\/\/www.sumologic.com\/glossary\/saas\/\">software-as-a-service<\/a> (SaaS) solutions for functions such as security and <a href=\"https:\/\/www.sumologic.com\/glossary\/continuous-integration\/\">continuous integration<\/a>\/<a href=\"https:\/\/www.sumologic.com\/glossary\/continuous-delivery\/\">continuous delivery <\/a>(CI\/CD). While this kind of complexity is increasingly common, AWS and other multi-cloud environments can be more difficult to manage and monitor compared with traditional on-premises infrastructure.<br><\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-c0c4bbf51a01b295a82b0c2ae25a5567\">To manage this complexity, Snoop\u2019s three-person <a href=\"https:\/\/www.sumologic.com\/glossary\/devsecops\/\">DevSevOps<\/a> team needed a clear understanding of what was happening, the context it was happening in and what was affected. The <a href=\"https:\/\/www.sumologic.com\/observability\/\">Sumo Logic observability platform<\/a> automatically ingests <a href=\"https:\/\/www.sumologic.com\/glossary\/telemetry\/\">telemetry<\/a> data collected by <a href=\"https:\/\/aws.amazon.com\/cloudwatch\/\" target=\"_blank\" rel=\"noopener\">Amazon CloudWatch<\/a> across Snoop\u2019s AWS stack, which includes <a href=\"https:\/\/aws.amazon.com\/ecs\/\" target=\"_blank\" rel=\"noopener\">Amazon Elastic Container Service<\/a> (Amazon ECS) on <a href=\"https:\/\/aws.amazon.com\/fargate\/\" target=\"_blank\" rel=\"noopener\">AWS Fargate<\/a> and <a href=\"https:\/\/aws.amazon.com\/lambda\/\" target=\"_blank\" rel=\"noopener\">AWS Lambda<\/a> instances. Because data collection is automated, there\u2019s no need for Snoop to install or maintain collectors. To speed data ingestion, Snoop uses Sumo Logic\u2019s Amazon <a href=\"https:\/\/aws.amazon.com\/kinesis\/\" target=\"_blank\" rel=\"noopener\">Kinesis Connector app<\/a>.<\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-f09f19b555554b8b7c3190a0695b04a2\">Sumo Logic aggregates <a href=\"https:\/\/www.sumologic.com\/glossary\/aws-cloudwatch\/\">Amazon CloudWatch<\/a> logs and metrics\u2014along with data from the fourteen other SaaS tools Snoop uses\u2014into a single centralized analytics platform with easy-to-use dashboards. <a href=\"https:\/\/www.sumologic.com\/webinar\/snoop-aws-data-driven-observability\/\">Watch this webinar<\/a> to learn more.<\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-ffb964ecbf8199baa80d15b3bd54514e\">The platform\u2019s <a href=\"https:\/\/www.sumologic.com\/blog\/sre-how-the-role-is-evolving\/\">site reliability engineering (SRE)<\/a> monitoring tools give Snoop\u2019s team the visibility they need to quickly diagnose and troubleshoot issues across their entire stack. By bringing separate logs and other telemetry together in one place, Snoop can more easily identify trends, correlate issues and understand root causes. Once an alert is received, Snoop uses Sumo Logic\u2019s <a href=\"https:\/\/www.sumologic.com\/video\/aws-observability-root-cause-explorer\/\">Root Cause Explorer<\/a> to accelerate the diagnostic process.<br><\/p>\n\n\n\n<p class=\"has-delft-blue-color has-text-color has-link-color wp-elements-d459080376061bb4703522af4cb9292e\"><a href=\"https:\/\/aws.amazon.com\/partners\/success\/snoop-sumo-logic\/\" target=\"_blank\" rel=\"noopener\">Read Snoop\u2019s full story<\/a> to learn more about how Sumo Logic\u2019s observability platform helps improve customer experience.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div><\/section>\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":231,"featured_media":25740,"template":"","meta":{"_acf_changed":false,"show_custom_date":false,"custom_date":"","featured":false,"featured_image":0,"learn_more_label":"","image_alt_text":"","learn_more_type":"","show_popup":false,"learn_more_link_file":0,"event_date":false,"event_start_date":"","event_end_date":"","place_holder_image_url":"","post_reading_time":"3","notification_enabled":false,"notification_text":"","notification_logo":"","notification_expiration_time":0,"is_enable_transparent_header":false,"selected_taxonomy_terms":{"blog-category":[130,125],"blog-tag":[]},"selected_primary_terms":[],"learn_more_link":[],"featured_page_list":[],"notification_enabled_post_list":[],"_gspb_post_css":"","_relevanssi_hide_post":"","_relevanssi_hide_content":"","_relevanssi_pin_for_all":"","_relevanssi_pin_keywords":"","_relevanssi_unpin_keywords":"","_relevanssi_related_keywords":"","_relevanssi_related_include_ids":"","_relevanssi_related_exclude_ids":"","_relevanssi_related_no_append":"","_relevanssi_related_not_related":"","_relevanssi_related_posts":"71176,71070,71043","_relevanssi_noindex_reason":"","inline_featured_image":false,"footnotes":""},"blog-category":[130,125],"blog-tag":[],"class_list":["post-4448","blog","type-blog","status-publish","has-post-thumbnail","hentry","blog-category-aws","blog-category-devops-it-operations"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog\/4448","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog"}],"about":[{"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/types\/blog"}],"author":[{"embeddable":true,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/users\/231"}],"version-history":[{"count":4,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog\/4448\/revisions"}],"predecessor-version":[{"id":25741,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog\/4448\/revisions\/25741"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/media\/25740"}],"wp:attachment":[{"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/media?parent=4448"}],"wp:term":[{"taxonomy":"blog-category","embeddable":true,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog-category?post=4448"},{"taxonomy":"blog-tag","embeddable":true,"href":"https:\/\/www.sumologic.com\/wp-json\/wp\/v2\/blog-tag?post=4448"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}