Packet Cloud ServicesPacket LabsPacketDCSMultiDocContact
Investors & Governance

Corporate Governance

The Group is directed and controlled through a board charter, defined committees and a code of conduct applied across every subsidiary.

Board charter

How the Group is directed

01

Role of the Board

The Board is responsible for the Group’s strategy, financial oversight, risk appetite, major capital decisions and the appointment of subsidiary boards. Matters reserved to the Board are set out in the charter and reviewed annually.

02

Chair and chief executive

The roles of Chair and Group Chief Executive are held by different individuals. The Chair leads the Board; the Chief Executive leads management and the operating companies.

03

Audit and Risk Committee

Oversees financial reporting, internal control, the external audit relationship and the Group risk register, including information-security and regulatory-compliance risk.

04

Nominating and Remuneration Committee

Recommends Board and subsidiary-board appointments, reviews Board composition and independence, and sets executive remuneration policy.

05

Subsidiary governance

Each operating company has its own board with a mandate approved by the Group Board and reports against it on a scheduled basis. Subsidiary policies are consistent with Group policy.

Conduct

Code of conduct

The code applies to directors, employees and contractors of every Group company, and its principles are incorporated into supplier and partner agreements.

  • Verifiable representations: certifications, licences and capabilities are described accurately, with their current status, and supported by evidence on request.
  • Independence: assurance and audit work is delivered independently of implementation where the applicable standard requires it.
  • Anti-bribery: the Group does not offer or accept improper payments and requires the same standard of its suppliers.
  • Information security and data protection: client data is handled under a formal control environment and held in the jurisdiction the client expects.
  • Conflicts of interest are declared and recorded.
  • Concerns may be raised in confidence to the Head of Compliance or the Chair of the Audit and Risk Committee without fear of reprisal.

Regulatory compliance

The Group’s companies operate under Singapore and Malaysian law, including the licensing frameworks applicable to cyber security services, communications and multimedia services and training provision in Malaysia. Licence and certification status is published by the relevant operating company.

Vulnerability disclosure

Security issues identified in any Group system may be reported to compliance@packetholdings.com. Reports are acknowledged, the reporter is kept informed, and no action is taken against good-faith security research.

Compliance

Compliance and conduct enquiries

Regulatory, conduct and security-disclosure matters.