AL-SALAM REIT ANNUAL REPORT 2024

RISK MANAGEMENT (CONT’D) The Board Sustainability Committee (Cont’d) Statement on Risk Management and Internal Control • Oversee compliance with ESG-related laws, listing requirements, and voluntary codes. • Monitor emerging ESG trends, risks, and stakeholder expectations. • Guide the company’s climate risk, diversity, and human rights commitments. • Establish and maintain the enterprise risk management framework, policies, and procedures. • Promote a risk-aware culture across the organization. • Ensure risk governance aligns with corporate strategy and regulatory expectations. • Review reports from risk owners and business units to identify emerging and existing risks. • Evaluate strategic, operational, financial, reputational, regulatory, and ESG-related risks. • Facilitate regular risk identification workshops or surveys. • Review the organization’s climate-related risk exposure and transition strategies (aligned with TCFD or ISSB). • Support the development of net-zero or carbon reduction goals. • Work alongside Audit & Risk Committee, and Investment Committee to ensure ESG risks and opportunities are integrated across all aspects of governance and operations. • Ensure cross-functional collaboration on ESG initiatives. • Promote a sustainability-minded culture throughout the organization. • Support ESG training, capacity-building, and board education. • Periodically review and enhance the ESG strategy and governance approach. 4. Regulatory & Stakeholder Compliance 1. Risk Governance & Framework Oversight 2. Identification & Assessment of Key Risks 5. Climate Risk & Transition Oversight 6. Coordination with Other Committees 7. Culture, Capacity & Continuous Improvement The Enterprise Risk Management Committee (ERMC) The ERMC supports the BARC in carrying out its oversight role. The ERMC ensures implementation and compliance with the Enterprise Risk Management Frameworks, enterprise risk management programmes, and monitoring of risk mitigation performance. The ERMC also sets the strict direction for risk roles, responsibilities, and risk reporting structures within the organisation. The ERMC meeting, is chaired by the Chief Executive Officer (CEO) and comprise of respective head of departments and/or Risk Owners. The ERMC is responsible for overseeing the identification, assessment, mitigation, and monitoring of key risks that could impact an organization’s ability to achieve its strategic and operational objectives. 1 ABOUT US 139 3 SUSTAINABILITY STATEMENT 4 CORPORATE GOVERNANCE 5 OTHER INFORMATION 6 FINANCIAL STATEMENTS 2 BUSINESS OVERVIEW

RkJQdWJsaXNoZXIy NDgzMzc=