Recent Breaches
Breaches
2026PowerSchool62.4M records stolen2026DISA Global Solutions3.3M records stolen2026Globe Life850K records stolen2026NHS ScotlandUndisclosed records stolen2026HertzUndisclosed records stolen2025Marks & Spencer9.4M records stolen2025PayPal35K records stolen2025Jaguar Land RoverUndisclosed records stolen2025Co-operative GroupUndisclosed records stolen2024National Public Data2.9B records stolen2024Ticketmaster560M records stolen2024Change Healthcare100M+ records stolen2024AT&T73M records stolen2024Dell Technologies49M records stolen2023Progress Software (MOVEit)77M+ records stolen202323andMe6.9M records stolen2023Royal MailOperations halted records stolen2023British LibraryUndisclosed records stolen2023MGM ResortsUndisclosed records stolen2022Uber57M records stolen2022LastPass33M records stolen2022Optus9.8M records stolen2022Medibank9.7M records stolen2022Twitter5.4M records stolen2026NHS ScotlandUndisclosed records stolen2026HertzUndisclosed records stolen2025Marks & Spencer9.4M records stolen2025PayPal35K records stolen2025Jaguar Land RoverUndisclosed records stolen2025Co-operative GroupUndisclosed records stolen2024National Public Data2.9B records stolen2024Ticketmaster560M records stolen2024Change Healthcare100M+ records stolen2024AT&T73M records stolen2024Dell Technologies49M records stolen2023Progress Software (MOVEit)77M+ records stolen202323andMe6.9M records stolen2023Royal MailOperations halted records stolen2023British LibraryUndisclosed records stolen2023MGM ResortsUndisclosed records stolen2022Uber57M records stolen2022LastPass33M records stolen2022Optus9.8M records stolen2022Medibank9.7M records stolen2022Twitter5.4M records stolen2026PowerSchool62.4M records stolen2026DISA Global Solutions3.3M records stolen2026Globe Life850K records stolen
View All →
OSS, Compliance & Risk

DORA Compliance with Offline Secure Storage

The Digital Operational Resilience Act requires financial entities to withstand ICT disruptions. Offline Secure Storage (OSS) provides physical resilience.

We Think This Is Hard to Ignore

DORA mandates that financial entities maintain operational resilience independent of third-party ICT providers. The Capita breach demonstrated what happens when critical financial data depends entirely on connected infrastructure. At Firevault, gold copies live on hardware with no network connection, because operational recovery requires data that was never part of the incident.

£14M

ICO fine to Capita — a major financial services processor

ICO, October 2025

£1.9B

Economic cost of JLR ransomware across supply chain

The Guardian, October 2025

3.31M

Confirmed fraud cases in UK in 2024

UK Finance 2025

277 days

Average time to identify and contain a breach

IBM Cost of a Data Breach 2024

The Gap

DORA raises the bar for financial resilience.

ICT Risk Management

Financial entities must identify, protect, detect, respond, and recover from ICT disruptions.

Third-Party Risk

DORA mandates oversight of critical ICT third-party providers.

Testing Requirements

Advanced threat-led penetration testing is required for significant entities.

The Reality

DORA-relevant failures are already happening.

Capita: £14M Fine — Financial Services Processor Breached

Capita processes pension and financial data for major UK institutions. The ICO fined the company £14 million after hackers accessed data of over 6 million people. Under DORA, financial clients would face direct regulatory consequences.

ICO, October 2025

Jaguar Land Rover: Third-Party ICT Failure Cost £1.9B

A ransomware attack paralysed JLR operations for weeks, demonstrating how ICT third-party failures cascade through financial and operational systems. DORA third-party provisions address exactly this risk.

The Guardian, October 2025

LastPass: Credential Vault Breach Exposed Financial Access

The ICO fined LastPass £1.2 million after hackers stole encrypted password vaults. Financial professionals using the service had banking and trading credentials exposed.

ICO, December 2025

How OSS Maps

Physical resilience for financial services.

Offline Secure Storage (OSS) provides physically disconnected infrastructure that satisfies DORA's resilience requirements.

  • Critical financial data in physically disconnected storage
  • Independent of third-party ICT providers
  • Rapid recovery from physically intact gold copies
  • Full audit trail for regulatory reporting

Take Critical Financial Data Off ICT Infrastructure

Step 1 of 3

Critical financial data is taken off ICT infrastructure and written to physically disconnected RAID 1 drives inside a Firevault Bunker. Operational data is preserved independently of third-party ICT providers.

Featured In

TechRadar ProConnected BritainTotal TelecomSecurity BuyerComms BusinessComms DealerBlocks & FilesYahoo FinanceGlobeNewswireChannel InsiderUK DirectorSecurityBriefPCRBusiness Time in EssexTechRadar ProConnected BritainTotal TelecomSecurity BuyerComms BusinessComms DealerBlocks & FilesYahoo FinanceGlobeNewswireChannel InsiderUK DirectorSecurityBriefPCRBusiness Time in Essex

Choose Your Protection

Which OSS Fits?

300GB

Low Use Vault — Deep Cold Storage

From £74.99/mo

inc. VAT · £0 due today

Offline Secure Storage for Offline Secure Storage — low use vault — deep cold storage.

What 300GB holds

~60,000 high-res photos
~150,000 PDF documents
~1,200 hours of voice recordings
~75 hours of HD video

Specifications

Capacity

300GB

Access

2 windows/week

Authentication

Identity-locked

Commitment

36 months

Security & Compliance

NATO-Approved FacilityDSIT-ReferencedGDPR Art. 32Cyber Essentials Plus

How to Get Started

Step 1

Discovery Call

Understand what you need to protect and how you operate.

Step 2

Vault Configuration

Select your tier, capacity, and access model.

Step 3

Identity Verification

Complete KYC/AML and set up multi-factor authentication.

Step 4

Go Live

Data ingestion, access policy activation, and ongoing support.

Questions

Frequently Asked

Ready to take the next step?

See how Firevault can protect your most sensitive data with physically disconnected storage.

    Your privacy matters

    We use cookies to keep the site running smoothly and to understand how you use it. You are in control. Privacy Charter · Cookie Policy