The 50 controls a supervisor reaches for first, in an editable Excel workbook. Capture the evidence, record the status, give every gap an owner and a date.
Drawn from the same requirement set as our full workbook, filtered down to the obligations that apply to every financial entity: 20 on ICT risk management, 10 on incident management, 7 on resilience testing, 11 on third-party risk, 2 on information sharing.
Each row asks for the evidence reference before the status: the policy ID, the register entry, the test report URL. Supervisors do not assess intent, they assess artefacts. An empty evidence cell is a non-compliance.
The DORA article is on the row, next to the requirement and the evidence a supervisor expects to see for it. No cross-referencing the regulation in another window.
Status, gap description, remediation action, owner and date sit in one line, with a filter across the whole sheet. A finding without a name and a date against it is not being fixed.
Opens in Excel, LibreOffice and Google Sheets. Nothing to enable, nothing to install, and it prints one page wide if you need it on paper for a working session.
No maturity scoring, no scope filtering, no dashboard, no self-filling action plan. This workbook records where you stand. Measuring it, and reporting it to a board, is the full Gap Analysis Pack below.
Instant access. No credit card required.
Three tabs. No macros, no hidden sheets, nothing to enable.
The starter tells you what you have. The full Gap Analysis Pack tells you where you stand, and gives you the guide and the report template to hand the result to a board or a client.