"The EU AI Act and DORA: What Banks Still Need to Do"
DORA gave banks a framework for digital resilience. But the EU AI Act introduces obligations that ICT risk management alone cannot satisfy — from fundamental rights assessments to training data governance and human oversight. Here's what the gap looks like, what the technical controls should include, and how to sequence the work before August.