Investor Relations

The Group

ESG

Corporate Governance

Investor Information

Investor Services

Português
  • Investor Relations
  • »
    Corporate Governance
  • »
    Compliance and Risk Management
Compliance and Risk Management

The Compliance Program of the Águas do Brasil Group has evolved into an Anti-Bribery, Compliance, Competition and Complaint Management System, ensuring that its integrity mechanisms comply with the laws and the requirements and recommendations developed by the International Organization for Standardization – ISO.

Consolidated policies from different areas address our ethical conduct and our strategic themes for business sustainability. To encourage the engagement of all stakeholders, we carry out training, procedures, and monitoring of indicators and actions in our management areas. All policies are available in our Electronic Document Management System, accessible to all employees.

In 2022, we implemented our Human Rights Policy, widely publicized on our internal and external communication channels. Additionally, we created and published our Diversity and Inclusion Manual, reinforcing our importance to the topic.

In 2022, we again attested to the quality and efficiency of the Compliance management system and continuous improvement practices, which maintained the recognition of recertification in the ABNT NBR ISO 37001:2017 standard and new certifications in the ABNT ISO 37.301:2021 and 37.002 standards: 2022. The Águas do Brasil Group adopts the most advanced integrity mechanisms, and we have achieved an essential position in a select team of Brazilian companies that adopt an international standard of best Compliance and Anti-Bribery practices.

Internal Audit and Risk

The Internal Audit area of the Águas do Brasil Group aims to add and preserve value in our operations by improving instruments intended for risk management, controls, and governance processes. Our compliance risk matrix lists 120 risks related to the topic and is reviewed annually by the Company. We are in the production phase of our integrated global risk matrix. We have personal data protection and information security policies and comply with all the General Data Protection Law (LGPD) requirements. To prevent cybersecurity incidents, we monitor this risk through a governance system to address relevant challenges. We have exclusive normative and technical documents that constitute information security guidelines and establish rules for data protection in the procedural, behavioral, and regulatory spheres.

Last Updated on January 2, 2024