Glossary · DORA
Finansinspektionen
Sweden's Financial Supervisory Authority, the competent authority for DORA compliance among Swedish financial entities.
Explained in depth: DORA overview
Finansinspektionen (FI) supervises Sweden's financial markets: banks, insurers, investment firms, payment institutions, fund managers, and more. Under DORA, FI is the Swedish competent authority: it receives major ICT-related incident reports from Swedish financial entities, collects their registers of information, supervises compliance with the ICT risk management requirements, and identifies which entities must perform threat-led penetration testing. For Swedish financial entities this creates a clear division of labour: DORA matters go to FI, while organisations covered by NIS2 report to CERT-SE under Cybersäkerhetslagen. A financial entity generally follows DORA rather than NIS2 for the areas DORA covers, under the lex specialis principle.
Why it matters
FI is the authority Swedish financial entities answer to for digital resilience: its reporting channels, guidance, and supervisory priorities define what DORA compliance looks like in Sweden in practice.
