Security & governance · Glossary term

What is AI Risk Assessment?

A documented analysis of how an AI system can affect people, organizations, and environments, including context, hazards, likelihood, impact, controls, residual risk, and monitoring responsibilities.

Why does AI Risk Assessment matter?

Model capability alone does not determine risk. Deployment context, affected groups, human authority, data, and system integrations change both the harms and the controls required.

AI Risk Assessment in practice

Define the intended use and affected parties, identify credible failure and misuse scenarios, assign owners to controls, record residual risk, and set review triggers for material changes.

What is the common confusion about AI Risk Assessment?

A risk assessment supports a decision under stated assumptions. It is not a one-time safety certificate or proof that every hazard has been found.

Learn AI Risk Assessment in the course

No lesson links to this term yet. Search the course catalog for it.

  • Threat ModelA documented account of protected assets, trust boundaries, potential adversaries, assumed capabilities, attack paths, impacts, and…
  • GuardrailsSystem controls that constrain inputs, tool use, outputs, permissions, and escalation.
  • Human-in-the-Loop (HITL)A workflow design in which a person supplies judgment, correction, approval, or escalation at defined points in an AI-driven process.
  • Data ClassificationAssigning data to documented sensitivity or impact classes so handling, access, retention, sharing, and incident rules follow the…
  • Purpose LimitationFor personal data, collecting and using it only for specified, explicit purposes unless a new use has an appropriate compatible or…

Sources

More terms in Security & governance

Open the Security & governance list in the glossary

This entry comes from glossary/terms.md on GitHub. Browse all 250 glossary terms.