The Definition of Risk in HIPAA

The definition of risk in HIPAA compliance is the impact on an organization of a potential event. 

It is typically expressed as a function of:

  1. The adverse impacts that would arise if the event occurs; and
  2. The likelihood of the event’s occurrence.

