Sopra Steria - 2018 Registration document

INTEGRATED PRESENTATION: SOPRA STERIA Risk management RISKMANAGEMENT

INTERNAL CONTROL AND RISK MANAGEMENT SYSTEM STAKEHOLDERS

Board of Directors / Audit Committee

Executive Management

2 ND LINE OF CONTROL Departments Finance Industrial Human Resources Legal Sustainable Development and Corporate Responsibility

1 ST LINE OF CONTROL Operational Management All entities All geographies All activities

3 RD LINE OF CONTROL Internal Audit

External Audit

Internal Control and Risk Management Department

The Group’s risk mapping exercise covers all internal and external risk factors and includes both financial and non-financial issues. In particular, the assessment of risks involves an evaluation of their probability of occurrence and the estimated magnitude of their adverse impact should an event occur (low, medium or high). As part of this exercise, the main risks are identified, namely the ones that are most significant for Sopra Steria, in terms of probability of occurrence and the expected magnitude of their impact. They have been ranked by category of risk. IDENTIFICATION OF THE GROUP’S MAIN RISKS

MAIN OPERATING RISKS

The aims of the internal control system and the risk management policies put in place by the Group are to reduce the probability of occurrence of these main risks as well as their potential impact on the Group. Chapter 1 of this document includes a detailed description of each of these risks, including the ways in which they are addressed by the Group’s risk management policies.

Risk related to market developments and the transformation of the business model

Risk related to the adaptation of skills*

Risk related to the protection and security of client data

Risk related to project delivery

Risk related to continuity of service and information system security

Risk related to attracting and retaining talent*

Risk related to the loss of a significant client

Risk related to activities in high-risk countries

Risk related to Brexit

Risks associated with retirement benefit obligations

MAIN NON-FINANCIAL RISKS

Risk of breaches of ethics or violations of the law*

* This risk also meets the requirements of the regulations set out in Articles L. 225-102-1-III and R. 225-105 of the French Commercial Code.

See Chapter 1 for more information

10

SOPRA STERIA REGISTRATION DOCUMENT 2018

Made with FlippingBook Learn more on our blog