Integrity governance

Risk Management

In a rapidly changing geopolitical and economic environment, enterprises face challenges across environmental, social, and governance dimensions. To strengthen Board oversight and organizational resilience, Ventec adopted the Risk Management Policy and Procedures at the fourth meeting of the Board in 2021, providing the foundation for sound operations and sustainable development.

01
Risk Management Organization and Structure

Ventec's risk-management governance is organized across multiple levels. The Board of Directors serves as the highest risk-oversight body, responsible for legal compliance and for ensuring the effectiveness of risk management while maintaining clear visibility of material operating risks. The Audit Committee supervises the operation of the riskmanagement mechanism. Based on risk assessments, the Internal Audit Office formulates the annual audit plan and executes audit work to assist the Board in supervising and controlling potential risks. The Chief Executive Officer & General Manager coordinates risk-management activities across the Company. Each responsible function—the Finance Division, Administration Division, Marketing Division, Materials Division, Technology Division, Manufacturing Division, and Information Technology Office—acts as the first line of defense, analyzing, monitoring, and preventing risks within its remit.

02
Risk Management Procedures

Ventec's risk-management policy comprises five parts: effective identification, analysis and assessment, control and treatment, continuous monitoring, and company-wide risk awareness. The procedures cover risk identification, risk analysis and assessment, risk control and treatment, risk oversight and review, and risk communication and reporting. The scope of risks is defined by operating policies and includes environmental, market, operational, investment, credit, information security, legal/litigation, and other risks.

  • Risk Identification
    Identify risks and opportunities across the internal and external context, stakeholder needs, and each process within the management system; identify emergencies that could affect production and delivery. Each department completes an operational risk assessment.
  • Risk Analysis & Assessment
    For identified potential risks and opportunities, analyze causes and preliminarily assess their negative and positive impacts on management-system processes or performance, with detailed descriptions of possible outcomes. Conduct a systematic evaluation considering likelihood, severity, and detectability.
  • Risk Control & Treatment
    Determine response measures in advance—risk avoidance, risk transfer/mitigation, or risk acceptance. Department representatives jointly complete the analysis report and contingency plan; the Chief Executive Officer & General Manager (or an authorized representative) convenes department heads to review, confirm the Company's direction, and provide a basis for operating decisions.
  • Risk Oversight & Review
    The Management Representative convenes a risk-review panel at least once per year to examine implementation status, evaluate effectiveness, and confirm that actions have reduced the relevant risks. It also reviews changes in stakeholder requirements, internal/external context, and response strategies since the previous review.
  • Risk Communication & Reporting
    Maintain robust communication mechanisms to ensure effective transmission of risk information across all organizational levels, and report major risk status and management effectiveness to the Board of Directors and senior management on a regular basis—addressing stakeholder concerns and demonstrating the Company's commitment to prudent operations.
03
Risk Mitigation and Management Strategies

Pursuant to the Risk Management Policy, Ventec annually builds a risk-assessment model tailored to operating conditions and stakeholder expectations. Each department evaluates risks by frequency, severity, and detectability. In 2024, 63 risks were assessed and categorized as high, low, or general; three high-risk factors were identified. After resource evaluation, priority measures were formulated for these high-risk factors. The effectiveness of all mitigation strategies is reviewed regularly by the responsible functional heads to ensure business continuity.

  • Taiwan
  • Suzhou Plants
  • Shenzhen Plants
  • Jiangyin Plant
  • Germany Office
  • United Kingdom Office
  • United States Office
  • Thailand office