COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY

Similar documents
Risk Management Strategy

29/11/2017. Risk Management Policy

Active Essex Risk Management Strategy

Statement on Risk Management and Internal Control

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

MANAGING RISK AT SUNCORP

Risk Management Policy

4.1.3 Enterprise Risk Management System

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards

6. IT Governance 2006

SENIOR INTERNAL AUDITOR

GRM OVERSEAS LIMITED RISK MANAGEMENT POLICY

Risk Management Policy & Procedure Document

AUDIT REPORT NOVEMBER

Annual Governance Statement

CORPORATE GOVERNANCE FRAMEWORK

Risk appetite and internal audit

Risk Management Update ISO Overview and Implications for Managers

Risk Management Policy

Citizens Property Insurance Corporation Business Continuity Framework

Approach. The Management. 1. Beyond Short-Term Profits. 2. Nurturing People. Nurturing Future Leaders. Long-Term Investments. Culture of Integrity

Information Governance Strategic Management Framework

Identifies the risk management structure, roles, responsibilities and authority of staff, committees and groups with responsibility for risk

Value for Money Strategy

Sample Corporate Risk Management Policy

Information and Communication Technologies Strategic Plan 2016/ /20

CFOs: The catalyst for integrating strategy, risk and finance

Our Approach to Risk Management

HSE Integrated Risk Management Policy. Part 3. Managing and Monitoring Risk Registers Guidance for Managers

Informal Consultation on Oversight Matters. September 2017

HEALTH PURCHASING VICTORIA STRATEGY. December 2017

IDENTIFYING MATERIAL ISSUES AND ENGAGING STAKEHOLDERS

Quality Management Policy. University-wide Specific. Staff Only Students Only Staff and Students. Vice-Chancellor

Risk frameworks. Driving business strategy with effective risk frameworks

Certificate in Internal Audit 3

United Lincolnshire Hospitals NHS Trust. Governance Statement 2015/16. Scope of responsibility. The governance framework of the organisation

Learning Legacy Document

STATEMENT ON RISK MANAGEMENT AND INTERNAL CONTROL

Management in Confidence MB2009.P. 73. MANAGEMENT BOARD Risk Management Audit Report 2008/09. Paper from the Corporate Risk Management Team (CRMT)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Role Description Director Asset Management - Building and Facilities

Simon Howard Sustainability Specialist, IHA 30 May 2012

RISK REPORT RISK MANAGEMENT THE ENTERPRISE RISK MANAGEMENT PROCESS INTERNAL CONTROL AND ENTERPRISE RISK MANAGEMENT POLICY

healthalliance Purpose, Vision and Principles

Toyota Financial Services (South Africa) Limited: King III Principles

Fraud Risk Management

DUBAL s ISO based ERM Program

Financial Management in the Federal Government:

Business Plan

Internal Oversight Division. Audit Report. Audit of Enterprise Risk Management

APM Risk SiG Conference 26 th October 2006 Reporting risks to the board

Financial Strategy 2012

Risk and compliance statement 2017

Risk Management Strategy

This policy establishes the approach to risk management at Sunshine Coast Council (Council) and outlines the guiding principles and framework.

BIM and Asset Information Modelling for Government Funded Infrastructure Projects. Mark Morris Asset Management Director HS2.

UNITY HOUSING ASSOCIATION - Board Member

EY Center for Board Matters. Leading practices for audit committees

Ethics & Governance Program Plan 2019

This document contains a summary of the Group s application of all of the principles contained in King III.

Apply accounting and finance skills. And lead within the organisation

Risk Management and Assurance Strategy

Developing a successful governance strategy. By Muhammad Iqbal Hanafri, S.Pi., M.Kom. IT GOVERNANCE STMIK BINA SARANA GLOBAL

Head of IT Operations

Increasing the Intensity and Effectiveness of Supervision

KING IV IMPLEMENTATION

How to get the most out of your governance structures. Risk Series Paper 3

TA Corporate Risks - Ethical Business Practice and Modern Compliance Framework Technical Annex. September 2018 Version 1.0

SHOPRITE HOLDINGS LTD. King III Reporting in terms of the JSE Listings Requirements

Audit and Risk Management Committee Policy Ecosave Holdings Limited ACN

GUIDANCE NOTE FOR DEPOSIT TAKERS (Class 1(1) and Class 1(2))

Internal Audit Report

Corporate Strategy for Commissioning and Procurement

Work Group: Risk and Review Host: Fox Blocks. Work Group: Risk and Review. Host: Fox Blocks

Sample Strategy and Value Oversight Policy

The LSB s Information for Practitioners. The Standards of Lending Practice for business customers Asset Finance. Governance and oversight

Australian Hardware. Risk Management Plan

Risk Appetite Statement

RISK MANAGEMENT STRATEGY

REPORT 2015/077 INTERNAL AUDIT DIVISION

Appendix 10d: Innovation Strategy

Safety Management and Risk Reduction Tools Measurement and Performance

Value For Money Strategy 2016/21

Role Description Executive Director

STATEMENT ON RISK MANAGEMENT AND INTERNAL CONTROL

Translate stakeholder needs into strategy. Governance is about negotiating and deciding amongst different stakeholders value interests.

Risk Advisory Services Developing your organisation s governance for competitive advantage

T E A L C O N S U L T I N G L T D I S O A G U I D E

STRATEGY, MATERIAL RISKS AND OPPORTUNITIES

RISK MANAGEMENT FRAMEWORK OF THE CGIAR SYSTEM

All expenses are inclusive of taxes. Please note there may be occasions whereby there is a delay in posting an expense due to timing of travel.

STRATEGIC DIRECTIONS

20 Years in the Making. Meet the New ICIF: Revisions to COSO s Internal Control Integrated Framework. Dr. Sandra Richtermeyer COSO Board Member

Health and safety objectives.

Department for International Development

COMPLIANCE MANAGEMENT FRAMEWORK FOR VICTORIA UNIVERSITY

Code of Governance for Community Housing Cymru s Members (a consultation)

A robust and systematic review.

Corporate Governance and Financial Markets

Unipart Verification Statement Unipart Group 2014 CR Report. Verification Objectives

Transcription:

COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY 1. INTRODUCTION The effective management of risk is central to the ongoing success and resilience of Coca-Cola Hellenic Bottling Company (CCHBC). CCHBC recognises that risk management is an integral part of both sound management practice and good corporate governance as it improves decision making, enhances outcomes, and strengthens management accountability. Enterprise risk management (ERM), that is culturally embedded, is also a means for achieving competitive advantage and is pivotal to driving ongoing business growth in what continues to be a complex and continually transforming operating environment. This policy details the both overall approach to risk management in CCHBC together with the Company s commitment to the process which has an overriding purpose of assisting in the responsible achievement of the Company s strategic and operational objectives. This policy has been adopted by CCHBC s Audit Committee. 2. SCOPE This is a group-wide policy and applies to all employees, functions and business operations in every country in which CCHBC operates. This policy is supported by our ERM Framework. 3. CONTEXT We understand that risk and opportunity are dynamic and ever present in our complex internal and external operating environments. This creates the need for us to manage risk in an informed way. Effective risk management, that is culturally embedded, provides the business with insight and competitive advantage and the program of forward looking risk management is a cornerstone to decision making. CCHBC is committed to the ongoing development of the enterprise wide approach to risk management ensuring that it is underpinned by a strong risk aware culture. Everyone in the business plays a role in managing risk by identifying opportunities and minimising uncertainty in a way that enables the Company to achieve its common goals growing the business; remaining resilient; enhancing stakeholder value; and contributing to the communities and future of every country in which CCHBC operates. The underlying risk principles that are applied are consistent with ISO31000 (Risk Management Principles and Guidelines). The strategy is supportive of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). 1 COCA-COLA HELLENIC BOTTLING COMPANY

4. OBJECTIVES The enterprise risk management program of CCHBC has a number of objectives: Recognises that risk is imbedded in all activities and that the underlying risk culture and approach is key to effective decision making; Promotes an enterprise wide approach through strong functional collaboration by integrating risk management processes with business strategy, project management, process and decision making; Promotes consistency and transparency in methodology, assessment and management processes; Promotes proactive recognition of external factors, opportunities, and anticipates uncertainties that could affect the achievement of the Company s strategies and objectives; Sponsors innovation through cultural acceptance thereby maximising value from assets, ventures and opportunities; Enables the design and implementation of controls that: Are structured to promote effective realisation of objectives; Provide appropriate assurance; and Are cost effective. Recognises that timely and accurate monitoring, review, communication and reporting of risk is critical to providing: Early warning mechanisms for the effective management of risk occurrences; Assurance to management, the Board and shareholders; A solid platform for growth; A sound business resilience platform. 5. ACCOUNTABILITIES The Board and Audit Committee The Board of Directors, via the Audit Committee, overseas the establishment and implementation of the risk management system and annually reviews the effectiveness of the system. The Committee considers on an ongoing basis whether: The ongoing program identifies material areas of risk and business opportunities; Adequate risk mitigation strategies have been designed and implemented to manage all identified material risks; A strong risk management culture is imbedded in the Company across business levels and functions; and 2 COCA-COLA HELLENIC BOTTLING COMPANY

The program is compliant with the requirements of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). Operating Committee The Operating Committee (OPCO) has overall responsibility for risk management at CCHBC including: Strategic risk; Operational and business risk; Project risk; and Financial risk They are provided specialist support in this regard by the Group Chief Risk Officer (CRO). Group Risk Function The Group Risk Management function, lead by the Group CRO, resides within the Company s Business Resilience function. The team is responsible for: Promoting and facilitating a standardised approach to effective risk management; Reviewing, updating and maintaining the ERM Framework; Assisting the business to understand and manage risks and facilitate the integration of the approved ERM Framework and Processes for managing risks across the operations; Supporting the business in identifying and implementing risk management improvement processes; Coordinating the functions of the Group Risk Forum in analysing operational and strategic risks; Developing and implementing strategies to strengthen risk management awareness and cultural acceptance; Monitoring factors in the internal and external environments that may affect our ability to achieve strategic objectives and/or operating targets; Report to the OPCO at regular intervals on material risks, opportunities and emerging issues; and Reporting to the Audit Committee on a half yearly basis on risks, mitigations, program maturity and compliance with the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). 3 COCA-COLA HELLENIC BOTTLING COMPANY

Group Risk Forum The Group Risk Forum (GRF) comprises senior managers from the business and acts as both a strategic risk think tank and independent review mechanism for risks and opportunities escalated by the country operations and functions. The forum specifically: Reviews the aggregated and escalated risks and opportunities and considers their relevance against the broader Group operations and objectives; Evaluates and discusses these risks and opportunities, together with identified aggregated or strategic risks observed by the GFC members across countries and functions, within the context of the broader Company risk universe and strategic/operational objectives; Evaluates the risks and opportunities for escalation to the OPCO, the Audit Committee and the Board; and Monitors that clearly articulated and adequate mitigation and response plans are in place. Internal Audit Department CCHBC s Internal Audit Department is separate from the Group Risk Management function. It provides assurance over the effective operation of risk management processes, methodologies, internal controls and compliance with the required elements of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). It independently evaluates the maturity of the ERM program against industry best practice. External Audit External Audit, as part of their audit processes, review CCHBC s controls in the area of risk management and will report on them in line with annual reporting procedures. Management Every manager is responsible for: Promoting the risk management policy, framework and expectations for the management of risk; Provision and support of appropriate resources to manage risk in accordance with the framework; Escalating risks and opportunities in accordance with the requirements of the ERM Framework; 4 COCA-COLA HELLENIC BOTTLING COMPANY

The implementation of cost effective risk management and internal control systems in accordance with guidelines, in order to manage risk, encourage efficiencies and take advantage of opportunities; and Continuous monitoring and reporting of the effectiveness of risk controls. Employees Every employee is responsible for looking for opportunities to improve operational efficiencies and optimise outcomes. They must also report immediately to management any real or perceived risks that become apparent and may significantly impact our: Commercial viability; Profitability Assets; Customers; Consumer or employee safety; Regulatory or Legal obligations; Environment; Sustainability Programs; and/or Community Risk Management Obligations Countries and key functions are accountable for managing their risks and must maintain a register of risks to their business objectives; Risk registers will be created through a thorough risk identification and assessment process following the CCHBC ERM Framework; Key markets and functions will participate in annual facilitated risk review sessions; Strategic Risk Review sessions will be conducted with the OPCO and the Audit Committee on an annual basis; Risks and key mitigations will be documented by country and functions as part of the Annual Business Planning Process; and Reviews of risk registers are to be conducted quarterly by the Group Risk function and key risks and trends are reported by the Group CRO to the Audit Committee in June and December. 5 COCA-COLA HELLENIC BOTTLING COMPANY

6. Related and Supporting Policies This Risk Management Policy is supported by other CCHBC policies and standards as issued from time to time. These documents include, but are not limited to: Business Continuity Management Policy Chart of Authority Code of Business Conduct Enterprise Risk Management Framework Fraud Control Policy Group Asset Protection and Security Guidelines Health and Safety Policy Treasury Policy 7. Policy Maintenance The Policy is administered by the Group CRO. The Policy is to be reviewed every two years and any changes to the Policy require Audit Committee approval. 6 COCA-COLA HELLENIC BOTTLING COMPANY