Glossary · Security & governance

AI Risk Assessment

A documented analysis of how an AI system can affect people, organizations, and environments, including context, hazards, likelihood, impact, controls, residual risk, and monitoring responsibilities.

Why it matters

Model capability alone does not determine risk. Deployment context, affected groups, human authority, data, and system integrations change both the harms and the controls required.

In practice

Define the intended use and affected parties, identify credible failure and misuse scenarios, assign owners to controls, record residual risk, and set review triggers for material changes.

Common confusion

A risk assessment supports a decision under stated assumptions. It is not a one-time safety certificate or proof that every hazard has been found.

Related terms

Sources

Browse the learning paths to see this term in context — every lesson is free to read.