MiCA
Compliance

Support for crypto-asset service providers and issuers under the EU Markets in Crypto-Assets Regulation — cybersecurity obligations, operational resilience, governance, and regulatory submission support.

Overview

Get crypto-ready for the EU.

MiCA creates a harmonised EU regime for crypto-asset service providers (CASPs) and token issuers — with real cybersecurity, governance, and operational-resilience obligations attached to authorisation.

We help you build the security and resilience controls MiCA expects, align with the overlapping DORA requirements, prepare governance and risk documentation, and support your regulatory submissions — backed by deep crypto and digital-asset experience.


Scope

What we deliver.

The cybersecurity and resilience side of MiCA authorisation.

Framework: EU MiCA DORA alignment CASP obligations ISO 27001 mapping

FAQ

MiCA FAQ

The questions we're asked most about scope, cost, and timing.

How much does MiCA compliance cost?
MiCA support is typically from €3,000 per month, usually delivered alongside DORA, with final pricing depending on your activities and scope. Use our estimator for a tailored figure.
Who does MiCA apply to?
Crypto-asset service providers (CASPs) and issuers of crypto-assets operating in the EU — exchanges, custodians, and token issuers.
How does MiCA relate to DORA?
CASPs in scope of MiCA are generally also subject to DORA’s ICT risk and resilience requirements. We deliver the two together to avoid duplication.
What does the cybersecurity part of MiCA involve?
A documented security control framework, ICT and third-party risk management, incident management, operational resilience, and supporting governance — much of which maps to ISO 27001 and DORA.
Do you understand crypto businesses?
Yes — deep crypto and digital-asset compliance experience is core to our practice, including wallet and key-management security.
When does MiCA apply?
MiCA’s regimes are phasing in across the EU; CASP authorisation requirements are now in force. We help you meet the cybersecurity and resilience elements.
Do MiCA and DORA both apply to us?
Most crypto-asset service providers in scope of MiCA are also subject to DORA; we deliver them together to avoid duplication.
Do you advise on wallet and key security?
Yes — custody, wallet, and key-management security are central to our crypto engagements.
Which member state should we authorise in?
That is a regulatory/legal decision, but we support the cybersecurity and operational-resilience evidence required wherever you apply.
How does MiCA map to ISO 27001?
Much of MiCA’s security expectation maps to an ISO 27001 ISMS, which we use as the backbone.

Related services

Explore more.

Ready for MiCA?

A 30-minute scoping call costs nothing. A blocked authorisation costs considerably more.

Book a meeting Send an email