Logo

Audit Committee report

Introduction and mandate

The Audit Committee has formal terms of reference which are updated every third year, or as and when required. The Board is satisfied that the Audit Committee has complied with these terms, and with its legal and regulatory responsibilities as set out in the Companies Act, 71 of 2008 (as amended) (the Companies Act), King IV Report on Corporate Governance™ for South Africa, 2016 (King IV)*, King V as of 1 April 2026, and the JSE LR.

The primary role of the Audit Committee is to ensure the integrity of Telkom SA SOC Ltd (Telkom or the Company) and the Telkom Group's financial reporting and audit processes and that a sound risk management and internal control system is maintained. In pursuing these objectives, the Audit Committee oversees relations with the external auditor and reviews the effectiveness of the internal audit function.

The Audit Committee consisted of five independent Non-executive Directors from 1 April 2025 to 31 March 2026. Keith Rayner is the Chairperson of the Audit Committee.

The Board believes that the Audit Committee collectively possesses the knowledge and experience to oversee Telkom's financial management, internal and external audit functions, the quality of Telkom's financial controls, the preparation and evaluation of Telkom's audited company and consolidated annual financial statements, and Telkom's periodic financial reporting.

Attendance and membership

The attendance of Audit Committee members at its meetings during the financial year was as follows:

Member Attendance
KA Rayner (Chairperson) 4/4
O Ighodaro 4/4
KP Lebina 4/4
PCS Luthuli 4/4
H Singh 4/4

The attendance of Audit Committee members at joint meetings held with the Investment and Transactions Committee and the Social and Ethics Committee during the financial year was as follows:

Member Attendance
KA Rayner (Chairperson) 2/2
O Ighodaro 2/2
KP Lebina 2/2
PCS Luthuli 2/2
H Singh 2/2
* Copyright and trademarks are owned by the Institute of Directors in South Africa NPC and all of its rights are reserved.

The Telkom Group has established and maintains internal controls and procedures, which are reviewed on a regular basis by Internal Audit, which then reports to the Risk and Audit Committees. These reporting responsibilities include managing the risk of business failures and providing reasonable assurance against such failures. However, this does not guarantee that such risks are eliminated.

Responsibility

It is the duty of the Audit Committee, inter alia, to monitor, review and, where applicable, approve:

  • The effectiveness of the internal audit function;
  • The recommendation to appoint and/or terminate the external audit firm and engagement partner (external auditor), approve their audit fee, expertise, independence and objectivity;
  • The nature and extent of any non-audit services performed by the external auditor;
  • The external auditor's suitability and recommendation to the shareholders for appointment and reappointment;
  • The reports of both internal and external auditors;
  • The expertise and experience of the Group Chief Financial Officer (GCFO);
  • The effectiveness of the finance function;
  • Financial reporting systems to ensure that Company and Group reporting procedures are functioning properly;
  • The governance of information technology (IT) and associated risks;
  • The internal financial controls compliance, combined assurance and enterprise risk management effectiveness;
  • The interim results and report, the audited Company and Group annual financial statements (annual financial statements), the integrated report, and all other widely distributed financial documents and announcements;
  • The quality and acceptability of the Telkom Group's accounting policies and practices;
  • Compliance with applicable legislation and requirements of appropriate regulatory authorities;
  • The integrity of the integrated report and associated reports (by ensuring that its content is reliable and recommending these to the Board for approval); and
  • Policies and procedures for preventing and detecting fraud.

Annual financial statements

The Committee has reviewed and is satisfied that the annual financial statements, including accounting policies, are appropriate and comply with the IFRS Accounting Standards of the IASB and are in compliance with the SAICA Financial Reporting Guides as issued by the Accounting Practices Committee, the Financial Reporting Pronouncements as issued by the Financial Reporting Standards Council, the JSE LR and the requirements of the Companies Act.

Management and the Audit Committee addressed key issues, including the following:

 
Dividend consideration Telkom's goal is to return cash to shareholders after sufficiently funding capital expenditure (capex) and strengthening the balance sheet.

The dividend policy is based on available free cash flow (FCF) while prioritising a strong balance sheet and future capex requirements.

The following distributions were approved by the Board for FY2026:
  • Ordinary dividend: R1 381 million (or 270.10 cents per share), representing 45% of the Group's FCF of R3 068 million.
Actuarial assumptions The review and approval of the actuarial assumptions for recommendation to the Board for both the interim period-end and financial year-end for financial computation and compilation purposes.
Impairment testing The review of the impairment testing of Telkom Group's cash-generating units (CGUs) resulted in no impairment and no impairment reversal for the BCX CGU, the Telkom Consumer CGU, and the Openserve CGU.
Expected credit loss provisions The review of the impairment of trade and other receivables, finance lease receivables and contract assets, and intercompany receivables and loans in accordance with IFRS 9.
Key audit matters The review and consideration of the key audit matters are detailed in the external auditor's report on the annual financial statements.
Group Chief Executive Officer and Group Chief Financial Officer responsibility statement The review and consideration of the Group Chief Executive Officer and Group Chief Financial Officer responsibility statement as required in terms of paragraph 5.9 of the JSE LR.
Remediation of internal control deficiencies The review and consideration of timeously implemented remedial actions by management regarding internal control deficiencies identified by Internal Audit.
Compliance with King IV and the JSE LR The review and consideration of the King IV disclosures, practices, and principles and the JSE corporate governance disclosures in accordance with the JSE LR and the JSE disclosure policy.

Execution of the Audit Committee mandate

The Audit Committee discharged all responsibilities and functions delegated to it in terms of the Audit Committee's terms of reference, the Companies Act, King IV, and the JSE LR.

During the year, the Audit Committee undertook the following:

In respect of the auditor:

  • Considered and satisfied itself that the external audit firm and the engagement partner are independent;
  • Considered and satisfied itself with respect to the Auditor Suitability Review required by the JSE LR;
  • Reviewed the nature of non-audit services that were provided by the external audit firm during the year;
  • Approved and confirmed non-audit services and fees, which the auditor performed, and fees incurred during the year under review;
  • Approved the fees paid to the auditor for the 2026 financial year; and
  • The Audit Committee Chairperson held separate meetings with the auditor prior to Audit Committee meetings.

In respect of financial reporting:

  • Considered the appropriateness and experience of the GCFO as required by the JSE LR;
  • Reviewed the annual financial statements and ensured that adequate controls are in place to ensure the correct compilation of the annual financial statements;
  • Reviewed the appropriateness of any amendments to accounting policies and internal financial controls; and
  • Reviewed the integrated reporting process.

In respect of Internal Audit:

  • Approved the internal audit plan for the year;
  • Monitored and provided oversight of the internal audit function;
  • Evaluated the effectiveness of the internal audit function; and
  • The Audit Committee Chairperson held separate meetings with the Chief Internal Audit Executive (CAE) prior to Audit Committee meetings.

In respect of the Audit Committee:

  • Ensured the Audit Committee complied with the membership criteria as set out in the Companies Act, King IV (applicable during the reporting period), and the JSE LR; and
  • Reviewed and approved the Audit Committee's terms of reference.

External auditor

The Audit Committee is also responsible for determining that the external auditor is independent.

After considering the audit approach, materiality, and audit risks, the Audit Committee reviewed and agreed to the interim period review plan, financial year-end audit plan, as well as to the interim and financial year-end audit fees. The Audit Committee received updates during the year on the audit process, including how the external auditor had challenged the Telkom Group's assumptions on the significant matters noted in this report.

The Board delegated the responsibility of reviewing the suitability of the Company's current appointed auditor for reappointment to the Audit Committee. The Audit Committee makes a recommendation to the Board, which then submits a recommendation to the shareholders in the notice of annual general meeting (AGM). The Audit Committee recommended the reappointment of the firm and individual partner to the Board, which recommended the same to the shareholders in the AGM notice.

Auditor independence

A key factor that may impair any such independence is a lack of control over non-audit services provided by the external auditor.

Telkom addresses this issue by ensuring prior approval by the GCFO and Chairperson of the Audit Committee of all non-audit services. Fees paid for non-audit services to the external auditor amounted to R2 308 800 for the financial year ended 31 March 2026 (31 March 2025: R2 965 493). Fees accrued for audit work performed for the financial year ended 31 March 2026 by the external auditor amounted to R87.85 million (31 March 2025: R86.84 million). Non-audit fees as a percentage of audit fees for the year ended 31 March 2026 is approximately 3% (31 March 2025: 3%). In FY2025, the non-audit fee was higher due to the Swiftnet sale transaction.

The Audit Committee Chairperson met with the external auditor prior to each Audit Committee meeting to discuss and review the content of the external auditor's report to the Audit Committee.

The Audit Committee has reviewed and assessed the independence of the external auditor and confirmed that the criteria for independence, as set out in the rules of the Independent Regulatory Board of Auditors (IRBA), the International Code of Ethics for Professional Accountants and other relevant legislation, have been followed. The Audit Committee is satisfied that the external auditor is independent of the Telkom Group.

Internal auditors

The internal audit function adopts a co-source operating model to supplement its activities and execute its mandate. The co‑sourcepartners are KPMG Services (Pty) Ltd (KPMG), SekelaXabiso SA Inc. (SkX) and Ernst & Young Inc. (EY). The co‑sourced service providers form part of Telkom's internal audit function and report directly to the CAE, Fazel Abram CIA, CA(SA).

Internal Audit monitors the internal control systems of the Company and Group and reports its findings and recommendations to the Audit Committee and senior management. The Audit Committee determines the purpose, authority, and responsibility of the internal audit function in the Internal Audit charter.

The internal audit function is headed by the CAE, who may be appointed or dismissed by the Audit Committee. The Audit Committee is satisfied that the incumbent CAE has the requisite skills and experience and that he is supported by a sufficient staff complement with appropriate skills and training. In addition, the Leadership Academy for Guardians of Governance, a wholly owned subsidiary of The Institute of Internal Auditors South Africa, performed an independent validation of Internal Audit. The validation assessed the robustness of the self-assessment process and reviewed supporting documentation and stakeholder input. The validation was concluded on 2 March 2026 and confirmed that the overall rating of "Generally Conforms with the Standards" was appropriate and supported by the evidence reviewed.

Telkom's Internal Audit operates in accordance with the International Standards for the Professional Practice of Internal Auditing as prescribed by the Institute of Internal Auditors. During the year, Internal Audit's activities were identified and planned using a combination of Telkom's risk management framework and the risk-based methodologies adopted by Internal Audit. The Audit Committee approves the annual Internal Audit assurance plan presented by Internal Audit and monitors progress against this plan.

Internal Audit reports deficiencies to the Audit Committee quarterly together with recommended remedial actions, which are then followed up. During the year, Internal Audit provided the Audit Committee with a written report, which assessed the internal controls over financial reporting, IT governance, and the risk management process as adequate.

The Chairperson of the Audit Committee met with the CAE prior to each Audit Committee meeting to discuss and review the Internal Audit report to the Audit Committee.

Internal Audit and the external auditor have unrestricted access to the Audit Committee, the Audit Committee Chairperson, the Risk Committee Chairperson, and the Chairperson of the Board, thereby ensuring the maintenance of independence.

Risk management

Telkom Group's Risk Committee reviews the Group's risk management, enterprise risk management programmes, business continuity, and forensic services. The Audit Committee Chairperson is a member of the Risk Committee and ensures any identified financial risks are referred to the Audit Committee for consideration. The significant principal risks, being those that will prevent the Group from achieving its strategic objectives in the short and medium term, are reported to and considered by the Risk Committee and the Board. All principal risks are currently managed within the risk appetite statements. The key focus areas, risk appetite, and further details of the Group's principal risks are included in the risk management in Telkom Group's integrated report.

The Internal Audit department conducted a review of the effectiveness of the risk management function, in accordance with the approved risk management framework. The results of the review indicated that the risk management process was satisfactory as at 31 March 2026.

Combined assurance

Telkom Group assessed risks based on principal risks as indicated above. The current combined assurance model is representative of how risks are being managed across the five lines of assurance. Management and Internal Audit have implemented a co-ordinated structure for planning, executing, and reporting on Internal Audit, compliance, and risk activities. The Audit Committee is satisfied that the Group has optimised assurance across the five lines of assurance in accordance with the approved combined assurance model. Furthermore, the model is considered effective in achieving its objectives of co-ordinating assurance and reporting to provide management and the Board with a clear view of the Group's risks, what the effective risk mitigations are, and the resulting acceptable level of residual risks.

Audit Committee statement

Based on information received from and discussions held with management and the external auditor, the Audit Committee is of the opinion that the financial records can be relied upon as the basis for the preparation of the annual financial statements.

The Audit Committee has considered and discussed the annual financial statements with both management and the external auditor. During this process, the Audit Committee:

  • Evaluated significant judgements and reporting decisions;
  • Determined that the going concern basis of reporting is appropriate;
  • Evaluated the material factors and risks that could impact the annual financial statements and associated reports;
  • Assessed the Group's solvency and liquidity, ensuring financial sustainability and the adequacy of disclosures;
  • Discussed the treatment of significant and unusual transactions with management and the external auditor;
  • Noted the tenure of the external audit firm;
  • Noted the tenure of the designated external audit partners; and
  • Discussed the Audit Committee's views on the effectiveness of the CAE.

A key requirement of the annual financial statements is that they must be fairly presented, balanced, understandable and provide the information necessary for stakeholders to assess the Group's position, performance, business model, and strategy. The Audit Committee and the Board are satisfied that the annual financial statements meet this requirement.

The Audit Committee believes that the annual financial statements comply in all material respects with the statutory requirements of the various laws and regulations governing the disclosure and reporting of the annual financial statements. Furthermore, the annual financial statements comply, in all material respects, with IFRS Accounting Standards, as issued by the IASB, the SAICA Financial Reporting Guides issued by the Accounting Practices Committee and the Financial Reporting Pronouncements issued by the Financial Reporting Standards Council, as well as the requirements of the Companies Act and the JSE LR. The Audit Committee has recommended that the Board adopt and approve the annual financial statements.

Keith Rayner CA(SA)
Chairperson: Audit Committee

1 June 2026

Previous