The loss of control, compromise, unauthorized disclosure, unauthorized acquisition, or any similar occurrence where (1) a person other than an authorized user accesses or potentially accesses data or (2) an authorized user accesses data for an other than authorized purpose.
Source(s):
NIST Privacy Framework Version 1.0
from
OMB M-17-12 - Adapted