In my opinion,the responsibility falls to both parties. 1st, the overall responsibility is to the RISK COMMITTEE as they are appointed to oversee the whole processes need to be done in reference to Risk. 2nd, Risk manager is employed by the company who’s responsibility is to assist management in identify, assess and respond to risk.
Hi Azzal, thanks for your response. You are correct. I had this clarified at work. The risk manager will identify and assess risks whilst the committee approve the strategy.