Skip to main content
← Back to Tools
FCA & DORA Operational Resilience

STAMP Operational Resilience Assessment

Assess your operational resilience maturity across Services, Tolerances, Architecture, Monitoring, and Proof — aligned to FCA PS21/3, FCA SS1/21, and EU DORA requirements.

What is STAMP?

STAMP is a CTO-oriented framework for operational resilience that organises the requirements of FCA (UK) and DORA (EU) into five actionable pillars: Services, Tolerances, Architecture, Monitoring, and Proof.

Who Should Use This?

CTOs, CIOs, and technology leaders in financial services firms subject to FCA operational resilience rules (UK) or the Digital Operational Resilience Act (EU). Also useful for their critical ICT third-party providers.

The Five STAMP Pillars

S
Services

Identification and mapping of important business services from a customer-harm perspective

T
Tolerances

Setting and calibrating impact tolerances for each important business service

A
Architecture

Identifying and mitigating single points of failure, enabling failure isolation and deterministic recovery

M
Monitoring

Service-level monitoring against impact tolerances with real-time visibility

P
Proof

Evidence through scenario testing, postmortems, and resilience dossiers

Regulatory Context

FCA (UK): Operational resilience requirements under PS21/3 and SS1/21 are fully in force. Firms must remain within impact tolerances by 31 March 2025.

DORA (EU): The Digital Operational Resilience Act applies from 17 January 2025 to all EU financial entities and their critical ICT providers.

47 questions across 5 pillars — takes approximately 20-30 minutes