DORA-ready third-party risk without a large compliance team.
Payment and e-money institutions can stand up a defensible ICT third-party programme quickly, with structured assessments and a Register that maintains itself.
DORA Third-Party Risk Overview
Northstar Financial Europe · updated 9 August 2026
DORA Readiness
84%
ICT Providers
142
Critical Providers
18
High Risks
7
Missing Evidence
23
Register Complete
91%
DORA Readiness
- ICT Provider Inventory96%
- Assessments82%
- Contract Coverage74%
- Evidence88%
- Register of Information91%
Attention Required
View allAWS assessment expires soon
Annual ICT Risk Assessment 2026 · due 18 Aug
Microsoft contract needs review
Exit strategy clause not documented
Stripe evidence expires next month
SOC 2 Type II report valid until 14 Sep
Fit
What matters for your teams
Fast setup
Import your provider list and classify criticality in days, not quarters.
Vendor portal
Collect answers and evidence without long email chains.
Contract review
Spot missing Article 30 clauses before renegotiation.
Cloud-heavy estates
Templates built for cloud and SaaS providers.
Investor and partner diligence
Export a clear view of ICT third-party posture.
Scales with growth
Add providers, entities and reviewers as you grow.
Inventory
One provider inventory everyone works from.
- Providers, ICT services and criticality in one place
- Owners assigned per provider and service
- Country and data location tracked
- Saved views for critical and high-risk providers
ICT Providers
142 providers · 18 critical
| Provider | ICT Service | Criticality | Country | Risk |
|---|---|---|---|---|
| Amazon Web Services | Cloud Infrastructure | Critical | Ireland | High |
| Microsoft Ireland | Cloud & Productivity | Critical | Ireland | Medium |
| Stripe Payments Europe | Payment Processing | Critical | Ireland | High |
| Snowflake Netherlands | Data Platform | Important | Netherlands | Medium |
| Cloudflare Germany | Network & Security | Important | Germany | Low |
| Temenos | Core Banking | Critical | Switzerland | Medium |
Reporting
A Register that reflects your operations.
- Validation before submission
- Completeness tracked continuously
- Lineage from every field to its source
- Structured export when needed
Register of Information
Reporting entity: Northstar Financial Europe · LEI 549300XKZ9Q2P1F4T083
Register Completeness
91%
Errors
3
Warnings
9
Validation issues
- AWSMissing contractual arrangement reference.Error
- StripeSubcontractor country incomplete.Error
- MicrosoftExit strategy not documented.Error
- SnowflakeData location not confirmed by evidence.Warning
- TemenosFunction criticality pending sign-off.Warning
Get your ICT third-party risk under control.
See how one platform connects your ICT providers, assessments, evidence, contracts, risks and DORA Register.