Risk Management

Advances in financial globalization and information technology have led to rapid growth in the diversity and complexity of banking operations, making risk management at financial institutions increasingly important. We place a high priority on risk management and are taking steps to refine our sophisticated framework for risk management, including the identification and control of the risks associated with our operational activities.

Our basic policy is to appropriately manage risks in view of our management strategies and risk characteristics and most effectively utilize our capital. By doing so, we are able to increase enterprise value while maintaining sound finances and appropriate operations.

The authorities and responsibilities of organizational entities and of directors and employees involved in risk management are assigned so that conflicts of interest do not arise. In addition, we have established a system that provides for appropriate cross-checks.

Board Risk Categories and Definitions

We broadly classify and define risks into the following categories, and manage the risks according to their characteristics.

Risk Category Risk Definition
Market risk Market risk is the risk of loss resulting from changes in the value of assets and liabilities (including off-balance sheet assets and liabilities) due to fluctuations in risk factors such as interest rates, foreign exchange rates and stock prices and the risk of loss resulting from changes in earnings generated from assets and liabilities.
Market liquidity risk Market liquidity risk is the risk that a financial institution will incur losses because it is unable to conduct market transactions or is forced to conduct transactions at far more unfavorable prices than under normal conditions due to a market crisis and the like.
Funding liquidity risk Funding liquidity risk is the risk that a financial institution will incur losses because it finds it difficult to secure the necessary funds or is forced to obtain funds at far higher interest rates than under normal conditions due to a mismatch between the maturities of assets and liabilities or an unexpected outflow of funds.
Credit risk Credit risk is the risk that a financial institution will incur losses from the decline or elimination of the value of assets (including off-balance sheet assets) due to deterioration in the financial condition of an entity to which credit is provided.
Operational risk The risk that losses will be incurred due to inadequate or failed internal processes, people and systems, or due to external events.
Processing risk The risk of losses arising from failed processing due to negligence, accidents, or fraud by officers or employees.
IT system risk The risk of losses arising from the failure of, the malfunctioning of, defects in, or unauthorized use of IT systems.
Information asset risk The risk of losses arising from the loss, falsification, inappropriate use, or external leakage of information due to IT system damage or inappropriate processing.
Legal risk The risk of losses arising from compensation for damages, penalties, or surcharges, or a decline in customer trust, due to an inability to rigorously comply with laws (including laws,ordinances, internal regulations, and processing procedures, etc.).
Human resources risk The risk of losses arising from discriminatory acts in human resources administration.
Tangible assets risk The risk of losses arising from damages to tangible assets resulting from natural disasters or other events.
Reputational risk The risk of losses arising from the spread among the public, or a certain segment of the public, of false information about us, causing a loss of the Bank's credibility, damage to our image, and as a result, a loss of customers or fund-raising counterparties, or causing a worsening of transaction conditions.

Risk Management System

We have established risk management entities for each risk category as well as the Risk Management Department, which is responsible for monitoring the risks within the risk categories in an integrated manner in order to ensure the effectiveness of our comprehensive risk management. The Risk Management Department operates independently from other departments.

We have established special advisory committees to the Executive Committee to handle risk management responsibilities: the Risk Management Committee and the ALM Committee. These advisory committees submit risk management reports based on risk characteristics and hold discussions about risk management policies and systems.

Prior to launching new products, services, or businesses, we assess potential risks and select appropriate methods to measure risks.

