Recent Breaches
Breaches
2026PowerSchool62.4M stolen62.4M records stolen2026DISA Global Solutions3.3M stolen3.3M records stolen2026Globe Life850K stolen850K records stolen2026Co-operative Group6.5 million members (names, contact details, dates of birth) stolen6.5 million members (names, contact details, dates of birth) records stolen2026HarrodsAttempted intrusion, limited disruption stolenAttempted intrusion, limited disruption records stolen2026Legal Aid Agency (Ministry of Justice)2.1 million applicants (financial, criminal, contact data since 2010) stolen2.1 million applicants (financial, criminal, contact data since 2010) records stolen2026Adidas UKCustomer contact details (subset) stolenCustomer contact details (subset) records stolen2026Peter Green ChilledOrder and logistics data stolenOrder and logistics data records stolen2026Jaguar Land RoverProduction and IT systems disrupted stolenProduction and IT systems disrupted records stolen2026Collins Aerospace (RTX)Check-in and boarding disruption across Heathrow, Brussels, Berlin stolenCheck-in and boarding disruption across Heathrow, Brussels, Berlin records stolen2026Co-operative Group6.5 million members (names, contact details, dates of birth) stolen6.5 million members (names, contact details, dates of birth) records stolen2026HarrodsAttempted intrusion, limited disruption stolenAttempted intrusion, limited disruption records stolen2026Legal Aid Agency (Ministry of Justice)2.1 million applicants (financial, criminal, contact data since 2010) stolen2.1 million applicants (financial, criminal, contact data since 2010) records stolen2026Adidas UKCustomer contact details (subset) stolenCustomer contact details (subset) records stolen2026Peter Green ChilledOrder and logistics data stolenOrder and logistics data records stolen2026Jaguar Land RoverProduction and IT systems disrupted stolenProduction and IT systems disrupted records stolen2026Collins Aerospace (RTX)Check-in and boarding disruption across Heathrow, Brussels, Berlin stolenCheck-in and boarding disruption across Heathrow, Brussels, Berlin records stolen2026PowerSchool62.4M stolen62.4M records stolen2026DISA Global Solutions3.3M stolen3.3M records stolen2026Globe Life850K stolen850K records stolen
View All →
OSS, Compliance & Risk

DORA Compliance with Offline Secure Storage

The Digital Operational Resilience Act requires financial entities to withstand ICT disruptions. Offline Secure Storage (OSS) provides physical resilience.

View All Compliance

We Think This Is Hard to Ignore

DORA mandates that financial entities maintain operational resilience independent of third-party ICT providers. The Capita breach demonstrated what happens when critical financial data depends entirely on connected infrastructure. At Firevault, gold copies live on hardware with no network connection, because operational recovery requires data that was never part of the incident.

£14M

ICO fine to Capita, a major financial services processor

ICO, October 2025

£1.9B

Economic cost of JLR ransomware across supply chain

The Guardian, October 2025

3.31M

Confirmed fraud cases in UK in 2024

UK Finance 2025

277 days

Average time to identify and contain a breach

IBM Cost of a Data Breach 2024

The Gap

DORA raises the bar for financial resilience.

ICT Risk Management

Financial entities must identify, protect, detect, respond, and recover from ICT disruptions.

Third-Party Risk

DORA mandates oversight of critical ICT third-party providers.

Testing Requirements

Advanced threat-led penetration testing is required for significant entities.

The Reality

DORA-relevant failures are already happening.

Capita: £14M Fine, Financial Services Processor Breached

Capita processes pension and financial data for major UK institutions. The ICO fined the company £14 million after hackers accessed data of over 6 million people. Under DORA, financial clients would face direct regulatory consequences.

ICO, October 2025

Jaguar Land Rover: Third-Party ICT Failure Cost £1.9B

A ransomware attack paralysed JLR operations for weeks, demonstrating how ICT third-party failures cascade through financial and operational systems. DORA third-party provisions address exactly this risk.

The Guardian, October 2025

LastPass: Credential Vault Breach Exposed Financial Access

The ICO fined LastPass £1.2 million after hackers stole encrypted password vaults. Financial professionals using the service had banking and trading credentials exposed.

ICO, December 2025

How OSS Maps

Physical resilience for financial services.

Offline Secure Storage (OSS) provides physically disconnected infrastructure that can help support DORA's resilience requirements.

  • Critical financial data in physically disconnected storage
  • Independent of third-party ICT providers
  • Rapid recovery from physically intact gold copies
  • Full audit trail for regulatory reporting

Take Critical Financial Data Off ICT Infrastructure

Step 1 of 3

Critical financial data is taken off ICT infrastructure and written to physically disconnected RAID 1 drives inside a Firevault Bunker. Operational data is preserved independently of third-party ICT providers.

Featured In

TechRadar Pro logoSecurity Buyer logoYahoo Finance logoSecurityBrief logoChannel Insider logo
Commercial Advantage

Win Business, Earn Trust, and Build Reputation with Butterfly

Butterfly is an operational model that helps organisations structure sensitive data to close deals faster, strengthen client relationships, and demonstrate the governance maturity that wins enterprise contracts.

Built on the VPPP framework (Vault, Policy, Permissions, Purpose), Butterfly maps your sensitive data and assigns dedicated Vaults by role, relationship, and purpose, turning data stewardship into a competitive advantage.

Deal Readiness

Governed materials ready to share with confidence

Client Trust

Demonstrate stewardship that earns loyalty

Board Confidence

Clear governance that inspires stakeholders

Enterprise Scale

Structure data governance across your organisation

Butterfly deployment model

Who Uses Butterfly?

  • Sales Teams

    Secure client proposals, pricing, and commercial intelligence

  • Service Providers

    Exchange sensitive documents with clients through governed Vaults

  • Businesses

    Protect strategic plans, IP, and competitive intelligence

  • Family Offices

    Structure data governance across principals, staff, and advisors

Questions

Frequently Asked

CAF-aligned

Mapped to CAF outcomes, not certified against CAF.

Firevault is not certified against the NCSC Cyber Assessment Framework. CAF is a self-assessment framework for essential service operators. The sections below show how our products help you evidence CAF outcomes in your own submission.

Offline Secure Storage and CAF

Using Offline Secure Storage supports CAF Objective B (Protecting against cyber attack) and Objective D (Minimising the impact of incidents). Gold copies live on hardware that is physically disconnected between sessions, giving operators evidence of protective isolation and a recoverable state.

Supports outcomes

B3 Data SecurityB5 Resilient Networks & SystemsD1 Response & Recovery Planning
How OSS maps

Taking Control, deploying Blueprints and CAF

Deploying a Control Blueprint supports CAF Objective A (Managing security risk) and Objective C (Detecting cyber security events). Blueprints document identity-verified access, session logging and segregation between operational and archived data, so the controls can be pointed at CAF outcomes in a self-assessment.

Supports outcomes

A2 Risk ManagementA4 Supply ChainC1 Security Monitoring
See Control Blueprints

Deploying Firebreak and CAF

Deploying Firebreak supports CAF Objective B (Protecting against cyber attack) at the network boundary of operational technology environments. Firebreak enforces physical-layer separation between OT and IT, giving CNI operators evidence of controlled paths for CAF network security outcomes.

Supports outcomes

B2 Identity & Access ControlB4 System SecurityB5 Resilient Networks & Systems
Explore Firebreak

Firevault maps controls to CAF outcomes to help essential service operators evidence their own self-assessment. Full mapping detail is available on request.

    Your privacy matters

    We use cookies to keep the site running smoothly and to understand how you use it. You are in control. Privacy Charter · Cookie Policy