Enterprise Risk Management

Front Campus Walkway

PURPOSE

The Office of Enterprise Risk Management (ERM) supports the University System of Georgia by providing a systematic, organized, and structured framework that aligns processes, people, systems, and information to mitigate or influence risk events that affect the attainment of key strategic goals and objectives adopted by the Board of Regents. 

Each institution faces risks unique to its mission and campus environment. Risk management is an essential aspect of all institutional activities. Enterprise risks are significant conditions, events, circumstances, actions, or inactions that could adversely affect an institution’s ability to achieve objectives and execute strategies. Enterprise risks are categorized as: 

  1. Strategic – Affects the achievement of overarching goals and objectives.
  2. Compliance – Affects compliance with federal, state, and local laws, rules, and regulations.
  3. Reputational – Affects public perception and the organization's overall reputation.
  4. Financial – Affects assets, budgets, financial reporting, and auditing
  5. Operational – Affects business processes, systems, technology, human resources, facilities, student services, and other areas that influence operational efficiency or effectiveness.

Georgia College & State University manages risk through the ERM Task Force and the Steering Committee, both of which include delegates from the University's major operational functions. These groups help ensure that risk management decisions align with our strategies, are well-informed, and are shared across the organization. This Charter outlines the roles and responsibilities for risk management at Georgia College & State University. 

MEMBERSHIP

  • Project Champion – President
  • Steering Committee - President’s Cabinet
  • Task Force – University-wide representatives
  • Risk Owners – Periodically identified by Project Champion
  • Coordinator – Chief Audit Officer

COMMITTEES AND RESPONSIBILITIES

PROJECT CHAMPION

  • Reports major risks (if any) to USG BOR when they are identified
  • Prioritizes top objectives as necessary
  • Assigns enterprise risk owners to address all key institutional risks
  • Monitors the institution’s progress in mitigating risks at an acceptable tolerance level
  • Guides the ERM Coordinator, Steering Committee, and Task Force

STEERING COMMITTEE

  • Validates and recommends priorities of key risks identified by Task Force
  • Recommends Risk Owners to the Project Champion
  • Approves the risk tolerance associated with each key risk
  • Works closely with risk owners to review current mitigation plans on key risks and to determine the effectiveness of controls
  • Reviews mitigation plans from risk owners provided to the Champion
  • Monitors progress of controls designed to mitigate risks to an acceptable level

TASK FORCE

  • Has no executive powers or supervisory functions. Its role is to review and recommend on behalf of the entire university to the President and Steering Committee.
  • Brainstorms on key risks for the institution based on the university’s objectives
  • Scores risks and provides them to the Steering Committee on an annual basis
  • Determines and implements communication channels to enhance the ERM process

RISK OWNERS

  • Research and documents key risks and underlying risk components
  • Delegates authority to establish and implement risk mitigation plans
  • Tracks and periodically reports to the Steering Committee and Project Champion the progress of the controls designed to mitigate risks

COORDINATOR

  • Maintains ERM framework records
  • Facilitates meetings and leads discussions
  • Reports significant risks to the USG BOR periodically as determined by the USG Office of Risk Management ERM reporting process

ANNUAL CHARTER REVIEW AND EVALUATION

The Steering Committee and Task Force shall annually assess their activities and the responsibilities outlined in this Charter and act as needed based on that assessment. The assessment shall include a review of the ERM Charter's adequacy. The President will approve any recommended revisions to the Charter.

This Charter was approved by President Cathy Cox on September 23, 2026.