Corporate governance frameworks hold the Board of Directors ultimately responsible for risk oversight. This fiduciary obligation requires boards to maintain an active understanding of the enterprise risk profile. [1]
Optimizing Board-Level Risk Committee Structures
To fulfill these oversight obligations, the Board delegates technical risk tasks to dedicated committees. This structural division separates financial reporting checks from broad operational risk tracking:
                    +-----------------------------+

                    |      Board of Directors     |
                    +-----------------------------+
                                   |
         +-------------------------+-------------------------+

         |                                                   |
+-----------------+                                 +-----------------+

| Audit Committee |                                 | Risk Committee  |
+-----------------+                                 +-----------------+

| Financial Logs  |                                 | Risk Appetites  |
| Control Audits  |                                 | KRIs & Exposure |
+-----------------+                                 +-----------------+

  • The Audit Committee: Primarily oversees the integrity of financial statements, internal accounting controls, and coordinates directly with external auditors.
  • The Board Risk Committee: Focuses on framing the enterprise risk appetite, evaluating the key risk indicator (KRI) framework, monitoring residual risk exposures, and reviewing high-impact operational threats.

Â