Corporate governance frameworks hold the Board of Directors ultimately responsible for risk oversight. This fiduciary obligation requires boards to maintain an active understanding of the enterprise risk profile. [1]
Optimizing Board-Level Risk Committee Structures
To fulfill these oversight obligations, the Board delegates technical risk tasks to dedicated committees. This structural division separates financial reporting checks from broad operational risk tracking:
+-----------------------------+
| Board of Directors |
+-----------------------------+
|
+-------------------------+-------------------------+
| |
+-----------------+ +-----------------+
| Audit Committee | | Risk Committee |
+-----------------+ +-----------------+
| Financial Logs | | Risk Appetites |
| Control Audits | | KRIs & Exposure |
+-----------------+ +-----------------+
- The Audit Committee: Primarily oversees the integrity of financial statements, internal accounting controls, and coordinates directly with external auditors.
- The Board Risk Committee: Focuses on framing the enterprise risk appetite, evaluating the key risk indicator (KRI) framework, monitoring residual risk exposures, and reviewing high-impact operational threats.
Â