Page 77 - E-BOOK
P. 77

Work from Home, or developing Work from Anywhere in the future to support any crisis situations. Furthermore, the
              work strategies may be adjusted to be consistent with the Company’s business operation


                     •   Annual shareholder’s meeting year 2020
                     In 2020, the Company realizes and care about health and safety of every meeting attendant under the
              outbreak of COVID-19. The Company then provides a measure and code of practices for the general shareholder’s
              meeting attending provided that the shareholders can give a proxy to an independent director of the Company to
              attend the meeting and make a vote on behalf of the shareholders. The Company provides the screening point and
              measures body temperature of every meeting attendant strictly as well as sets social distancing for the attendants.


                     •   Organizational restructuring to support GRC integration
                     The Board of Directors emphasizes the integration of good corporate governance, risk management and compliance
              with rules and regulations, that is called Governance Risk and Compliance (GRC) by restructuring the organization which
              includes corporate governance and risk management for the operation works of the related sectors oversight departments
              to cover GRC and meet the global standard.


                     •   Hiring outsourced advisor for GRC development
                     The Company hires an outsourced advisor which is Pricewaterhouse Coopers ABAS Co., Ltd. (PWC) which is
              the consultant Company having experience in developing GRC Works for financial institutions, being an advisor for the
              Company, in building up the knowledge and understanding for executives and employees. This will develop the integration   75
              of GRC, and improve internal process of governance, risk management, and compliance of the Company in order to meet the
              global standards. Nevertheless, the advisor has scope of services according to the Term of Reference: TOR in 2020 as follows.
                         -  Arrange a training to build up knowledge and understanding
                         -  Assess work under the integration of GRC of the organization so as to evaluate, analyze and identify
                            the points that should be improved
                         -  Provide GRC Framework and Action Plan


                     •   Hiring outsourced advisor for Information Technology (IT) Risk management
                     At present, information technology plays an important role in business operation of the Company especially
              when used to enhance effectiveness of services provided to customers so that they will receive services that better
              meet their need. Therefore, the Company improves the risk overseeing process on information technology to support
              business patterns, and be consistent with the technology that rapidly changes, which may cause risks to
              safety of services, customer’s data, and service continuity. To uplift the information technology risk oversight,
              the Company hires an outsourced advisor, namely ACIS Professional Center Co., Ltd, to manage information
              technology risks to meet the global standards and be in line with the oversight according to the notice of the Bank
              of Thailand associated with information technology risk oversight (Sor.Nor.Sor.21/2562). The consulting Company
              proceeds with GAP analysis and provides the policy about important information technology risk oversight as follows
                         -  IT Risk Management Policy
                         -  IT Outsourcing Policy
                         -  Training to build up knowledge and understanding
   72   73   74   75   76   77   78   79   80   81   82