Sound Governance and Health-Focused Emphasis
The Board of Ósar and its subsidiaries recognizes the growing demands placed on companies regarding societal responsibility. The Board emphasizes sound governance and its continuous development and strengthening, as it lays the foundation for responsible management, sound decision-making, and reliable communications.
The group’s governance outlines how internal structure supports active and healthy governance guided by the group’s objectives. We aim to influence society, including the employees of the group, and help individuals maintain health and well-being and improve their quality of life. Our governance reflects these goals and is embodied in health-related emphases when it comes to policymaking, decision-making, goal-setting, and culture—both externally and internally.

Ósar and Subsidiaries’ Code of Ethics and Communication
Ósar employees adhere to the highest standards, laws, and regulations regarding ethics and communication with stakeholders.
Honest and Responsible Business Practices
Ósar and its subsidiaries conduct honest and responsible business where bribery and corruption are neither practiced nor tolerated.
Ósar and Subsidiaries’ Code of Ethics and Communication
Ósar employees adhere to the highest standards, laws, and regulations regarding ethics and communication with stakeholders.
Honest and Responsible Business Practices
Ósar and its subsidiaries conduct honest and responsible business where bribery and corruption are neither practiced nor tolerated.
Comprehensive Risk Management and Active Quality Control
Ósar’s operations are affected in various ways by external conditions. A major influence is that a significant portion lies within the regulated framework of the healthcare system. The operations are thus governed by laws, regulations, and public oversight, demanding rigorous practices in every respect.
Healthy governance includes risk management and control. Therefore, we place strong emphasis on integrated risk management and active quality control as part of daily operations.

“At Ósar, we emphasize comprehensive risk management to mitigate operational risks and ensure that risk-taking aligns with our risk policy and defined risk appetite.
Ósar’s risk policy is based on ISO 31000 principles. The policy supports consistent practices across Ósar and its subsidiaries and aims to identify, assess, measure, and manage operational risks. The main goal is to treat risks exceeding thresholds, prioritize mitigation actions, and ensure that all parties understand their roles, communication channels, and the importance of risk management.
Ósar’s and its subsidiaries’ operations involve various risks that require expertise and insights from diverse employees. The knowledge and experience of our staff are critical to effective risk management.”
Birta Ólafsdóttir, Head of Risk Management, Ósar

“At Ósar, we emphasize comprehensive risk management to mitigate operational risks and ensure that risk-taking aligns with our risk policy and defined risk appetite.
Ósar’s risk policy is based on ISO 31000 principles. The policy supports consistent practices across Ósar and its subsidiaries and aims to identify, assess, measure, and manage operational risks. The main goal is to treat risks exceeding thresholds, prioritize mitigation actions, and ensure that all parties understand their roles, communication channels, and the importance of risk management.
Ósar’s and its subsidiaries’ operations involve various risks that require expertise and insights from diverse employees. The knowledge and experience of our staff are critical to effective risk management.”
Birta Ólafsdóttir, Head of Risk Management, Ósar
Increased Emphasis on Cyber and Information Security
Europe has introduced new rules in the field of cyber and information security. These changes have had a significant impact on cybersecurity accountability and the operational resilience of entities subject to the regulatory framework.
Our objective has been to translate these requirements into a strategy that delivers tangible results and creates a potentially competitive advantage for the entire group by strengthening trust among customers and other stakeholders.
In response to increased requirements and a constantly evolving threat landscape, Ósar has placed cyber and information security at the forefront of its priorities in recent years. Considerable emphasis has been placed on building robust infrastructure and clear operational procedures to better manage risk, strengthen defences against current threats, and ensure greater oversight at senior management level.
At the same time, we have prioritised the security of our supply chain. By setting clear standards for ourselves and our partners, we aim to have a positive influence across the supply chain, uphold sound and responsible governance practices, comply with applicable laws and regulations, and further strengthen our commitment to corporate social responsibility in this area.
We Choose Partners Who Align With Our Values
A changing landscape increasingly demands companies to create positive societal impacts through their supply chains. At Ósar, we want to show responsibility through action. We’ve adopted a policy on selecting partners who share the group’s values. To support this, we’ve prepared a Code of Conduct for our partners and set minimum safety requirements for those operating the group’s IT systems. This aims to clearly communicate our expectations to our partners.
By setting clear demands on ourselves and our partners, we aim to positively influence the supply chain and further contribute to our corporate responsibility.
Ósar’s Partners’ Code of Ethics
Ósar demand that our partners adhere to laws and regulations around their operations, in addition to ESG compliance.
Ósar’s Risk Policy
All entities within Ósar analyze and manage risk in their operations with a regular risk assessment, monitoring and actions.
Ósar’s Guiding Principles
Ósar’s guiding principles direct employee behavior and communication and help build a positive work culture. Developed collaboratively, they are as follows:
- We treat each other well
- We speak to people, not about them
- We listen attentively and show interest
- We speak our minds and choose the right time and place
- We care for one another and offer support
- We share ideas and welcome diverse viewpoints
- We create space to grow through communication
- We seize opportunities to praise each other
These principles guide us daily and have become a key part of communication and culture within the group.



