2024 UEM Edgenta Annual Report

The Compliance Framework sets out the approach for UEM Edgenta in managing regulatory compliance obligations and mitigating compliance risk, in order to achieve its compliance objective. Risk, Integrity & Compliance Department (“RICD”) is spearheading the compliance management process ensuring the effectiveness of the compliance process and establishing appropriate compliance monitoring to address and report on any compliance issues. The outcome of the monitoring activities is reported to the RICC, BGRC and Board. UEM Edgenta adopts the following Compliance Framework in undertaking its compliance commitment: COMPLIANCE POLICY OVERNANCE STRUCTURE APPROACH METHODOLOGY MATURITY LEVEL LEVEL 0 - Incomplete Ad-hoc & unknown LEVEL 2 - Process Process measured & controlled LEVEL 4 - Programme Outcome measured & controlled LEVEL 1 - Initial Unpredictable & reactive LEVEL 3 - System Proactive rather than reactive LEVEL 5 - Effective Optimising for effectiveness To ensure a positive compliance culture through adopting the highest standards of probity and accountability in all areas of UEM Edgenta Group’s operations and businesses OBJECTIVE STATEMENT Upholding Responsibility Elevating good business practices Articulating compliance commitment Establishment of compliance reporting dashboard Establishment of Regulations listing & compliance checklist Review of Acts & Regulations Compliance Self-Assessment Board of Directors (“Board”) Board Governance and Risk Committee (“BGRC”) Risk, Integrity and Compliance Committee (“RICC”) Risk, Integrity & Compliance Department (“RICD”) Process Owner Internal Audit Function (Compliance Assurance) Compliance Function (Monitor compliance) Governance Owner (Inform new laws and regulations) Process Owner (Ensure compliance) Statement on Risk Management and Internal Control UEM EDGENTA BERHAD 250 Integrated Annual Report 2024

RkJQdWJsaXNoZXIy NDgzMzc=