The foundation of OPTIMA’s Risk Management Policy is the systematic identification, assessment, management, and mitigation of factors that could impact the safety of invested funds and the resilience of IT infrastructure, business lines and products of the group. The management of these risks is built upon regular identification of potential hazards, their quantitative and qualitative assessment, setting risk thresholds by asset class, portfolio stress testing, and the formation of reserves and response plans. To ensure the security of capital and operations, the following measures are applied: access control procedures, segregation of duties, cold storage of keys, multi-signature solutions, hardware security modules (HSM), data encryption, regular vulnerability testing, and an incident management program.
The organizational policy includes independent internal and external audits, in-depth compliance management, incident escalation procedures, and business continuity plans (BCP/DR), as well as daily monitoring of market and operational indicators; meanwhile, counterparty control based on legal expertise, monitoring of financial condition and conditions of trusted custodianship.