Home » Investors » Corporate Governance » Risk management and risks

Risk management and risks

Risks and uncertainties

The Group’s risks are related to its operational environment, or business or financial risks. Risks related to the operational environment may include business development risks, market risks or legislative risks. Business level risks may include personnel risks, risks related to management, process risks, service risks, information security risks, accident risks, growth-related risks or partner risks. Financial risks include, for example, financing and credit risks.

Poor economic development in Finland may have an adverse impact on Eezy’s business and result. In economic downturn it is possible that companies use less staffing services and other HR services offered by Eezy. 

Other material risks identified for Eezy’s operations are: motivation and commitment of personnel, insufficient investment in technological development and harmonization of operational models and supplier dependence. If there is insufficient investment in technological development and harmonization and implementation of a new digital operational model and other processes, this may lead to inefficiencies and weakened customer satisfaction. 

Main features of internal control and risk management related to financial reporting process

Overview of risk management

The objective of risk management is to ensure the realization of the Group’s targets and uninterrupted continuity of operations. In its activities, Eezy complies with the principles of risk management and guidelines for internal control approved by the Board. The principles of risk management are based on the Finnish governance code.

Eezy’s risk management is part of the Group’s ERP and is thus an integral part of the Group’s management system. It is an integral part of Eezy’s planning and management process, decision making, day-to-day management and operations, and its monitoring and reporting functions. Risk management is a part of internal control.

Risk management is systematic, predictive and comprehensive. It covers the activities of the entire Group and accounts for all risk areas. This means that key risks are identified, assessed, managed, monitored and reported on systematically as part of business operations.

The planning and strategy process includes identifying risks that threaten the realization of targets and defines the means of managing them. Eezy’s risk management consists of a risk management target state, a risk management process and its implementation, monitoring and reporting. Risk management is developed continuously as part of Eezy’s operations.

Eezy may take calculated risks that can be managed and that would have reasonable impact if realized. Risk-taking shall be based on advance identification and assessment of possible impact as well as identification and weighing of potential benefits and harms. Risk-taking shall not jeopardize the realization of the Group’s targets or short- or long-term business continuity.

The Board confirms the principles of the Company’s internal control and risk management and changes related to them, and handles the significant risks and uncertainties related to the Company’s operations.

Eezy’s CEO, with the support of the Group’s Management Team, is responsible for drafting the principles of risk management. The CEO is responsible for ensuring that the Group implements risk management systematically and appropriately. In addition, the CEO shall ensure the adequate scope of Eezy’s risk management and evaluate its implementation. The CEO reports to the Board on Eezy’s strategic level risks and means of controlling them, in compliance with the risk management principles and risk management processes approved by the Board.

The Board discusses the most significant strategic-level risks and the measures for managing them, and evaluates the efficiency and functioning of risk management. The Group Management Team discusses the most significant business risks to different business operations and the measures for managing them, and evaluates the efficiency and functioning of risk management. The CEO and each member of the Management Team and franchisee is responsible for operational risk management, identification of risks as well as defining and monitoring risk management methods in their areas of responsibility.

The Legal Counsel is responsible for the coordination of risk management.

Internal control and audit

The goal of Eezy’s internal control to ensure that Eezy’s objectives and targets are achieved, the Group’s resources are spent economically and efficiently, business risks are managed appropriately, and that financial and other information is reliable and accurate. In addition, internal control seeks to ensure business continuity in a changing operating environment and compliance with Eezy’s internal policies, instructions and processes, as well as applicable legislation and regulations. Internal control is an integral part of the Company’s good governance.

Internal control of financial reporting seeks to ensure that published interim reports, half-year statements, financial statements and other financial information, financial statements and annual reports are reliable and comply with the accounting and reporting principles adopted by the Company. The Company’s Board reviews and approves interim reports and financial statements according to its Rules of Procedure and approves the operating principles of internal control and auditing and monitors their implementation.

X