Two levels are distinguished in the risk management process:
I - GROUP LEVEL – monitoring the limits and risks specific to the Group
Risk management at this level is supposed to ensure that the PZU Group attains its business objectives in a safe manner appropriate to fit the scale of the risk incurred. The PZU Group provides support for the implementation of a risk management system, including the introduction of compatible mechanisms, standards and organization of an efficient operation of the internal control system (with particular emphasis on the compliance function), the risk management system (in particular in the reinsurance area) and the security management system in the PZU Group, and also monitors their ongoing application. The PZU Group’s dedicated personnel cooperates with the Management Boards of entities and managers of such areas as finance, risk, actuarial services, reinsurance, investments and compliance on the basis of pertinent mutual cooperation agreements.
II - ENTITY LEVEL – monitoring of limits and risks specific to the entity
Risk management at this level aims to ensure that the PZU Group entity attains its business objectives in a safe manner appropriate to fit the extent of the risk incurred by that entity. The limits and risk categories specific to the company are monitored at this level and also, as part of the risk management system, mechanisms, standards and organization are implemented for the efficient operation of the internal control system (with particular emphasis on the compliance function), the risk management system (in particular in reinsurance) and the security management system.