COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY



Similar documents
Confident in our Future, Risk Management Policy Statement and Strategy

ENTERPRISE RISK MANAGEMENT POLICY

DORSET & WILTSHIRE FIRE AND RESCUE AUTHORITY Performance, Risk and Business Continuity Management Policy

Risk Management Policy Adopted by:

ENTERPRISE RISK MANAGEMENT FRAMEWORK

Business Resilience and Risk Management

NSW Government ICT Benefits Realisation and Project Management Guidance

treasury risk management

Enterprise Risk Management Framework Strengthening our commitment to risk management

Risk Management Strategy & Implementation Plan

RISK MANAGEMENT OVERVIEW 2011 RISK CONFERENCE SPONSORED BY THE FEDERAL RESERVE BANK OF CHICAGO AND DEPAUL UNIVERSITY

APPLICATION OF KING III CORPORATE GOVERNANCE PRINCIPLES 2014

Risk Management Policy

APPLICATION OF THE KING III REPORT ON CORPORATE GOVERNANCE PRINCIPLES

RISK MANAGEMENT STRATEGY

Compliance Policy AGL Energy Limited

Corporate Risk Management Policy

The Asset Management Landscape

RISK MANAGEMENT FRAMEWORK OKHAHLAMBA LOCAL MUNICIPALITYITY

Risk Management Policy

Integrated Risk Management Policy

POSITION DESCRIPTION, PERFORMANCE MEASURES AND TARGETS

APPENDIX 50. Enterprise risk management - Risk management overview

IFAD Policy on Enterprise Risk Management

ENTERPRISE RISK MANAGEMENT POLICY

Enterprise Risk Management

Capital Adequacy: Advanced Measurement Approaches to Operational Risk

Clarius Group Risk Management Policy and Framework

Risk Management How to manage your brand & build business resilience to improve your bottom line

Climate Change and. Environment Position. Statement. and 2017 Action Plan. action. Statement. Action Plan. September 2014

DORSET & WILTSHIRE FIRE AND RESCUE AUTHORITY Performance, Risk and Business Continuity Management Policy

LHT S ASSET MANAGEMENT STRATEGY It s My Home

Managing Risk at Bank of America Corporation. Overview

The PNC Financial Services Group, Inc. Business Continuity Program

Information governance strategy

SAI GLOBAL LIMITED Risk Management Policy

The Regulatory Framework for Social Housing in England Governance and Financial Viability standard requirement: Governance Annual Assessment

ENTERPRISE RISK MANAGEMENT FRAMEWORK

White Paper. PPP Governance

THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK

ENGINEERING COUNCIL. Guidance on Risk for the Engineering Profession.

An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management

Beyond risk identification Evolving provider ERM programs

Operational Risk Management Program Version 1.0 October 2013

CONTROLLED DOCUMENT. Number: Version Number: 4. On: 25 July 2013 Review Date: June 2016 Distribution: Essential Reading for: Information for:

POL ENTERPRISE RISK MANAGEMENT SC51. Executive Services Department BUSINESS UNIT: Executive Support Services SERVICE UNIT:

Risk Management Framework

Technology and Cyber Resilience Benchmarking Report December 2013

ENTERPRISE RISK M A NAGEMENT POLICY

Policy : Enterprise Risk Management Policy

Risk Management Within an Organisation

A&CS Assurance Review. Accounting Policy Division Rule Making Participation in Standard Setting. Report

Project Governance A N T I C I P A T I N G A N A U D I T

Board of Directors Meeting 12/04/2010. Operational Risk Management Charter

Director: Improvement and Corporate Services. Improvement & Corporate Services

Housing Association Regulatory Assessment

the role of the head of internal audit in public service organisations 2010

Risk Management Framework

Linking Risk Management to Business Strategy, Processes, Operations and Reporting

The Lowitja Institute Risk Management Plan

FORUM ON TAX ADMINISTRATION

The College of New Jersey Enterprise Risk Management and Higher Education For Discussion Purposes Only January 2012

Department of Infrastructure and Planning: Governance Framework for Infrastructure Delivery Special Purpose Vehicles

Solutions and contact guide

RSA ARCHER OPERATIONAL RISK MANAGEMENT

UNITED NATIONS OFFICE FOR PROJECT SERVICES. ORGANIZATIONAL DIRECTIVE No. 33. UNOPS Strategic Risk Management Planning Framework

Operational Risk Management - The Next Frontier The Risk Management Association (RMA)

How To Write A Risk Management Policy For The University Of Kerry

Professional. Compliance & Ethics. 19 The cost of unethical behavior. 33 Graduate degrees in Compliance: Training the next generation

Network Rail Infrastructure Projects Joint Relationship Management Plan

Chief Information Security Officer

Consultation. Author: Briony Krikorian-Slade

Information Security Incident Management Policy September 2013

People & Organisational Development Strategy

KING III CORPORATE GOVERNANCE COMPLIANCE REGISTER

ISO and Risk Management

RISK MANAGEMENT GUIDANCE FOR GOVERNMENT DEPARTMENTS AND OFFICES

Risk Management Strategy

Information security controls. Briefing for clients on Experian information security controls

Risk Management Plan

Mapping COBIT 5 with IT Governance, Risk and Compliance at Ecopetrol S.A. By Alberto León Lozano, CISA, CGEIT, CIA, CRMA

Risk Management. Group Standard

Diagnostic Checklist PEOPLE PRINCIPLES PERFORMANCE SYSTEM PRACTICE AREAS. Global Management Accounting Principles

Sample risk committee charter

Independent Liquor & Gaming Authority Casino Compliance & Enforcement Policy

Enterprise Risk Management A View. Clive Kelly CRO Zurich Insurance plc/zfs Europe (GI)

Risk Management Policy

Performance Management Framework

Committees Date: Subject: Public Report of: For Information Summary

INFORMATION MANAGEMENT STRATEGIC FRAMEWORK GENERAL NAT OVERVIEW

Risk Management & Business Continuity Manual

Draft FATCA Regulations. Submission from the Association of Investment Companies

ING Group Compliance Risk Management Charter and Framework

POSITION DESCRIPTION. Role Purpose. Key Challenges. Key Result Areas

Transcription:

COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY 1. INTRODUCTION The effective management of risk is central to the ongoing success and resilience of Coca-Cola Hellenic Bottling Company (CCHBC). CCHBC recognises that risk management is an integral part of both sound management practice and good corporate governance as it improves decision making, enhances outcomes, and strengthens management accountability. Enterprise risk management (ERM), that is culturally embedded, is also a means for achieving competitive advantage and is pivotal to driving ongoing business growth in what continues to be a complex and continually transforming operating environment. This policy details the both overall approach to risk management in CCHBC together with the Company s commitment to the process which has an overriding purpose of assisting in the responsible achievement of the Company s strategic and operational objectives. This policy has been adopted by CCHBC s Audit Committee. 2. SCOPE This is a group-wide policy and applies to all employees, functions and business operations in every country in which CCHBC operates. This policy is supported by our ERM Framework. 3. CONTEXT We understand that risk and opportunity are dynamic and ever present in our complex internal and external operating environments. This creates the need for us to manage risk in an informed way. Effective risk management, that is culturally embedded, provides the business with insight and competitive advantage and the program of forward looking risk management is a cornerstone to decision making. CCHBC is committed to the ongoing development of the enterprise wide approach to risk management ensuring that it is underpinned by a strong risk aware culture. Everyone in the business plays a role in managing risk by identifying opportunities and minimising uncertainty in a way that enables the Company to achieve its common goals growing the business; remaining resilient; enhancing stakeholder value; and contributing to the communities and future of every country in which CCHBC operates. The underlying risk principles that are applied are consistent with ISO31000 (Risk Management Principles and Guidelines). The strategy is supportive of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). 1 COCA-COLA HELLENIC BOTTLING COMPANY

4. OBJECTIVES The enterprise risk management program of CCHBC has a number of objectives: Recognises that risk is imbedded in all activities and that the underlying risk culture and approach is key to effective decision making; Promotes an enterprise wide approach through strong functional collaboration by integrating risk management processes with business strategy, project management, process and decision making; Promotes consistency and transparency in methodology, assessment and management processes; Promotes proactive recognition of external factors, opportunities, and anticipates uncertainties that could affect the achievement of the Company s strategies and objectives; Sponsors innovation through cultural acceptance thereby maximising value from assets, ventures and opportunities; Enables the design and implementation of controls that: Are structured to promote effective realisation of objectives; Provide appropriate assurance; and Are cost effective. Recognises that timely and accurate monitoring, review, communication and reporting of risk is critical to providing: Early warning mechanisms for the effective management of risk occurrences; Assurance to management, the Board and shareholders; A solid platform for growth; A sound business resilience platform. 5. ACCOUNTABILITIES The Board and Audit Committee The Board of Directors, via the Audit Committee, overseas the establishment and implementation of the risk management system and annually reviews the effectiveness of the system. The Committee considers on an ongoing basis whether: The ongoing program identifies material areas of risk and business opportunities; Adequate risk mitigation strategies have been designed and implemented to manage all identified material risks; A strong risk management culture is imbedded in the Company across business levels and functions; and 2 COCA-COLA HELLENIC BOTTLING COMPANY

The program is compliant with the requirements of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). Operating Committee The Operating Committee (OPCO) has overall responsibility for risk management at CCHBC including: Strategic risk; Operational and business risk; Project risk; and Financial risk They are provided specialist support in this regard by the Group Chief Risk Officer (CRO). Group Risk Function The Group Risk Management function, lead by the Group CRO, resides within the Company s Business Resilience function. The team is responsible for: Promoting and facilitating a standardised approach to effective risk management; Reviewing, updating and maintaining the ERM Framework; Assisting the business to understand and manage risks and facilitate the integration of the approved ERM Framework and Processes for managing risks across the operations; Supporting the business in identifying and implementing risk management improvement processes; Coordinating the functions of the Group Risk Forum in analysing operational and strategic risks; Developing and implementing strategies to strengthen risk management awareness and cultural acceptance; Monitoring factors in the internal and external environments that may affect our ability to achieve strategic objectives and/or operating targets; Report to the OPCO at regular intervals on material risks, opportunities and emerging issues; and Reporting to the Audit Committee on a half yearly basis on risks, mitigations, program maturity and compliance with the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). 3 COCA-COLA HELLENIC BOTTLING COMPANY

Group Risk Forum The Group Risk Forum (GRF) comprises senior managers from the business and acts as both a strategic risk think tank and independent review mechanism for risks and opportunities escalated by the country operations and functions. The forum specifically: Reviews the aggregated and escalated risks and opportunities and considers their relevance against the broader Group operations and objectives; Evaluates and discusses these risks and opportunities, together with identified aggregated or strategic risks observed by the GFC members across countries and functions, within the context of the broader Company risk universe and strategic/operational objectives; Evaluates the risks and opportunities for escalation to the OPCO, the Audit Committee and the Board; and Monitors that clearly articulated and adequate mitigation and response plans are in place. Internal Audit Department CCHBC s Internal Audit Department is separate from the Group Risk Management function. It provides assurance over the effective operation of risk management processes, methodologies, internal controls and compliance with the required elements of the UK Corporate Governance Code (Guidance on Risk Management, Internal Control and Related Financial and Business Reporting). It independently evaluates the maturity of the ERM program against industry best practice. External Audit External Audit, as part of their audit processes, review CCHBC s controls in the area of risk management and will report on them in line with annual reporting procedures. Management Every manager is responsible for: Promoting the risk management policy, framework and expectations for the management of risk; Provision and support of appropriate resources to manage risk in accordance with the framework; Escalating risks and opportunities in accordance with the requirements of the ERM Framework; 4 COCA-COLA HELLENIC BOTTLING COMPANY

The implementation of cost effective risk management and internal control systems in accordance with guidelines, in order to manage risk, encourage efficiencies and take advantage of opportunities; and Continuous monitoring and reporting of the effectiveness of risk controls. Employees Every employee is responsible for looking for opportunities to improve operational efficiencies and optimise outcomes. They must also report immediately to management any real or perceived risks that become apparent and may significantly impact our: Commercial viability; Profitability Assets; Customers; Consumer or employee safety; Regulatory or Legal obligations; Environment; Sustainability Programs; and/or Community Risk Management Obligations Countries and key functions are accountable for managing their risks and must maintain a register of risks to their business objectives; Risk registers will be created through a thorough risk identification and assessment process following the CCHBC ERM Framework; Key markets and functions will participate in annual facilitated risk review sessions; Strategic Risk Review sessions will be conducted with the OPCO and the Audit Committee on an annual basis; Risks and key mitigations will be documented by country and functions as part of the Annual Business Planning Process; and Reviews of risk registers are to be conducted quarterly by the Group Risk function and key risks and trends are reported by the Group CRO to the Audit Committee in June and December. 5 COCA-COLA HELLENIC BOTTLING COMPANY

6. Related and Supporting Policies This Risk Management Policy is supported by other CCHBC policies and standards as issued from time to time. These documents include, but are not limited to: Business Continuity Management Policy Chart of Authority Code of Business Conduct Enterprise Risk Management Framework Fraud Control Policy Group Asset Protection and Security Guidelines Health and Safety Policy Treasury Policy 7. Policy Maintenance The Policy is administered by the Group CRO. The Policy is to be reviewed every two years and any changes to the Policy require Audit Committee approval. 6 COCA-COLA HELLENIC BOTTLING COMPANY