TOPICS / CYBERCORIA

Deep dives.

Editorial journeys connecting official texts, information-system architecture, methods and tools. Every topic starts with an operational question and explicitly separates requirements, recommendations and analysis.

Sources verified on August 25, 2026

01TOPIC

NIS2

NIS2 is neither a checklist nor merely a scoping questionnaire. For an entity in scope, the directive places governance, proportionate risk management and the ability to evidence implemented measures at the centre of the framework.

Open topic →
02TOPIC

Information system mapping

Useful mapping is not a static network diagram. It is a maintained model that explains information-system components, their relationships and the possible consequences of failure or attack.

Open topic →
03TOPIC

Cloud security

A useful cloud audit explains what was observed, in which scope, under which assumptions and why a finding deserves priority. A finding count or global score does not answer those questions.

Open topic →
04TOPIC

DORA

DORA requires in-scope financial entities to treat digital resilience as a system of governance, ICT risk management, continuity, testing and third-party oversight — not as an isolated documentation exercise.

Open topic →

PRINCIPLE

A deep dive should help people decide, not merely define terms.

Cybercoria topics combine primary-source reading, implications for the actual information system and a path for further work. They do not replace legal scoping or an audit tailored to the organisation.