Meridian DORA ConsultancyTrust Centre
Last updated

Security overview

Meridian DORA Consultancy last updated this page on 2026-09-02

Security and data protection at Meridian DORA Consultancy

Meridian DORA Consultancy (a worked example) advises financial-services firms on the EU Digital Operational Resilience Act. This page shows the Plus tier.

Our coverage below is Declared: we self-map our controls to the framework. The Assessed mark (independently verified) is a Managed-tier feature.

Certifications

ISO/IEC 27001
Certificate valid to 01 May 2027
DORA DORA readiness (self-declared)
Certificate valid to —

ISO/IEC 27001 is a trademark of ISO. DORA is EU Regulation 2022/2554. Shown as a worked example only; no certification of any real organisation is implied.

Coverage

4 areas mapped
ISO 27001: mapped by Meridian DORA Consultancy
Access control SOC 2 Type II report (sample)
Business continuity Business Continuity Plan (sample)
Supplier security Subprocessor list (sample)
Vulnerability management Penetration Test Summary (sample)

Mapped by Meridian DORA Consultancy. They have matched their own published documents to the areas below, so each row says which document applies where.

What it covers. The areas Meridian DORA Consultancy have mapped, rather than every area of the standard, and what those documents say rather than how well a control operates.

Documents

Public
Subprocessor list (sample) v1·Published 02 Sep 2026 Public
DORA control mapping (sample) v1·Published 02 Sep 2026 Public
Private
SOC 2 Type II report (sample) v1·Published 02 Sep 2026 Private
Sensitive
Business Continuity Plan (sample) v1·Published 02 Sep 2026 Sensitive
Penetration Test Summary (sample) v1·Published 02 Sep 2026 Sensitive

Subprocessors

NamePurposeLocationCategoryTheir privacy notice
AWS (eu-central-1)HostingGermany
A cloud email providerTransactional emailEU