SANASA Development Bank PLC

Integrated Annual Report 2020

Financial Reports

Directors’ Statement on Internal Control over Financial Reporting

Responsibility

In line with the Section 3 (8) (ii) (b) of the Banking Act Direction No. 12 of 2007, the Board of Directors presents this report on Internal Control over Financial Reporting.

The Board of Directors (“Board”) is responsible for the adequacy and effectiveness of the internal control mechanism in place at SANASA Development Bank PLC (“the Bank”). In considering such adequacy and effectiveness, the Board recognises that the business of banking requires reward to be balanced with risk on a managed basis and as such the internal control systems are primarily designed with a view to highlighting any deviations from the limits and indicators which comprise the risk appetite of the Bank. In this light, the system of internal controls can only provide reasonable, but not absolute assurance, against material misstatements of financial information and records or against financial losses or frauds.

The Board has established an ongoing process for identifying, evaluating and managing the significant risks faced by the Bank and this process includes enhancing the system of internal controls over financial reporting as and when there are changes to business environment or regulatory guidelines. The process is regularly reviewed by the Board and accords with the Guidance for Directors of Banks on the Directors’ Statement on Internal Control, issued by The Institute of Chartered Accountants of Sri Lanka. The Board has assessed the Internal Controls over Financial Reporting taking into account the principles for the assessment of internal control system as given in that guidance.

The Board is of the view that the system of internal controls over financial reporting in place is sound and adequate to provide reasonable assurance regarding the reliability of financial reporting, and that the preparation of Financial Statements for external purposes in accordance with relevant accounting principles and regulatory requirements.

The Management assists the Board in the implementation of policies and procedures on risk through designing and implementing suitable internal controls to mitigate risks faced by the Bank.

Key features of the process adopted in applying and reviewing the design and effectiveness of the internal control system over Financial Reporting

The key processes that have been established in reviewing the adequacy and integrity of the system of internal controls with respect to financial reporting include the following:

  • Various appointed committees are established by the Board to assist the Board in ensuring the effectiveness of Bank’s operations and that the Bank’s operations are in accordance with the corporate objectives, strategies and the annual budget as well as the policies and business directions that have been approved.
  • The Internal Audit Department of the Bank verifies for compliance with policies and procedures and the effectiveness of the internal control systems on an ongoing basis through the application of Risk Based Audit Procedures (RBAP). Audits are carried out on head office functions, regional offices, and branches in accordance with the annual Risk Based Audit Plan approved by the Board Audit Committee (BAC). The frequency of which is determined by the level of risk assessed, to provide an independent and objective report. Findings of the Internal Audit Department are submitted to the BAC for review at their periodic meetings. The BAC also reviews and updates on the scope and the adequacy of the internal audit function against the approved audit plan.
  • The BAC reviews internal control issues identified by the Internal Audit Department, the External Auditors, regulatory authorities, including Key Audit Matters (KAM) given by the External Auditors: and evaluates the adequacy and effectiveness of the risk management and internal control systems. The minutes of the BAC meetings are forwarded to the Board on a periodic basis. Further, details of the activities undertaken by the BAC of the Bank are set out in the Board Audit Committee Report (BAC).
  • The Board Integrated Risk Management Committee (BIRMC) was established to assist the Board to oversee the overall risk management of the principal areas of the Bank. The Executive Integrated Risk Management Committee (EIRMC) which includes representation from all key business, operating and control units of the Bank to assist BIRMC to execute the assigned functions as per the ToR.
  • Operational committees have also been established with appropriate empowerment to ensure effective management and supervision of the Bank’s core areas of business operations. These committees include the Assets and Liability Management Committee, Investment Committee, the Information Technology Steering Committee, and the Operational Risk Management Committee.
  • In assessing the internal control system over financial reporting, the process owners of the Bank collate all the procedures and controls to ensure that the Financial Statements of the Bank provide accurate information. These in turn were reviewed by the Internal Audit Department for suitability of the design and effectiveness on an ongoing basis, throughout the year.

The Internal Audit Department conducts continuous monitoring over the selected types of transactions using data streaming software. This initiative has helped Internal Audit Department to improve its pro-activeness.

The BAC continuously monitored the implementation of the Sri Lanka Financial Reporting Standard – SLFRS 9 “Financial Instruments” issued by The Institute of Chartered Accountants of Sri Lanka which became effective from 1 January 2018. The impairment model was re-validated during 2020 and independently validated by the External Auditors.

The Board Audit Committee also closely monitored the training and awareness session on SLFRS 9 “Financial Instruments” conducted to the Board and the Senior Management during 2020.

Comments made by the External Auditors in connection with the internal control system over financial reporting in previous years have been reviewed during the year and appropriate steps have been taken to rectify them. The recommendations made by the External Auditors during the year, in connection with the internal control system over financial reporting will be dealt with in future.

Confirmation

Based on the above processes, the Board confirms that the Financial Reporting system of the Bank has been designed to provide a reasonable assurance regarding the reliability of financial reporting and the preparation of Financial Statements for external purposes and has been done in accordance with Sri Lanka Accounting Standards and Regulatory Requirements.

Review of the statement by External Auditors

The External Auditors, Messrs Ernst & Young have reviewed the above Directors’ Statement on Internal Control over Financial Reporting included in the Annual Report of the Bank for the year ended 31 December 2020 and reported to the Board that nothing has come to their attention that causes them to believe that the statement is inconsistent with their understanding of the process adopted by the Board in the review of the design and effectiveness of the Internal Controls over Financial Reporting of the Bank. Their Report on the Statement of Internal Controls over Financial Reporting is given in the Auditors’ Report of this Annual Report.

By Order of the Board,

Chaaminda Kumarasiri
Chairman
Board Audit Committee (BAC)

Prof Sampath Amaratunge
Chairman
Board Integrated Risk Management Committee (BIRMC)

Lakshman Abeysekera
Chairman – SANASA Development Bank PLC

19 March 2021

Colombo, Sri Lanka

Close