Goal-Driven Risk Assessment for LLM-Powered Systems: A Healthcare Case Study
This paper proposes a structured, goal-driven risk assessment framework that utilizes attack trees to contextualize and harmonize LLM-specific threats with conventional cyber attacks, demonstrating its effectiveness through a healthcare case study to enable more precise risk prioritization and secure-by-design practices.