Mixed Deck — All CIM Topics Flashcards
100 cards from real CIM practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 20 Mixed Deck — All CIM Topics flashcards as text
Which of the following best describes a key competency required for root cause analysis & problem management in CIM practice?
Answer: Strong analytical skills combined with effective communication and ethical judgment
CIM professionals working in root cause analysis & problem management need analytical skills to assess situations, communication skills to convey findings, and ethical judgment to make sound decisions.
A CIM is comparing MTTR across three different teams. Team A has the lowest MTTR but the highest escalation rate. What is the most likely explanation?
Answer: Team A is escalating incidents quickly rather than resolving them, artificially lowering their MTTR
Escalating incidents transfers ownership, which may stop the clock on Team A's MTTR while passing unresolved work downstream.
Which of the following BEST describes 'two-way communication' during a crisis?
Answer: Establishing channels for stakeholders to ask questions and receive responses in addition to broadcast updates
Two-way communication enables stakeholder feedback and questions, building trust and surfacing concerns that could affect the response.
Which communication artifact provides the MOST comprehensive record of all decisions and actions taken during an incident?
Answer: Incident chronological log (timeline)
A chronological incident log captures every decision, action, and communication with timestamps for full auditability.
What is a 'Change Freeze Period' in ITIL change management?
Answer: A period during which non-emergency changes are prohibited to protect service stability
A Change Freeze Period prohibits non-emergency changes during high-risk business periods (e.g., financial year-end) to protect service stability and prevent change-induced incidents.
An incident is escalated to Tier 2 but the Tier 2 team determines it belongs to Tier 3. Who should update the ticket and notify the user?
Answer: The Tier 2 team before transferring to Tier 3
The Tier 2 team holds ownership during the handoff and should update the ticket and communicate with the user before transferring to Tier 3.
What is the primary goal of change management as it relates to incident prevention?
Answer: To ensure changes are implemented without causing unplanned service disruptions
The primary goal of change management is to implement changes in a controlled manner that minimizes risk, thereby preventing change-induced incidents and service disruptions.
Which metric best indicates whether a service desk's escalation threshold is set appropriately?
Answer: Escalation rate combined with Tier 2 resolution rate
Comparing escalation rate with how often Tier 2 actually resolves vs. returns tickets reveals whether the threshold is calibrated correctly.
In a standard priority matrix, which combination results in the highest (P1/Critical) priority?
Answer: High impact, High urgency
In a standard priority matrix, High impact combined with High urgency produces the highest (P1/Critical) priority designation.
What does SLA stand for in the context of incident management?
Answer: Service Level Agreement
A Service Level Agreement (SLA) is a formal contract between a service provider and customer that defines agreed targets for incident response and resolution times.
What is the recommended approach when an OLA between the incident management team and the database team is consistently being missed?
Answer: Review and renegotiate the OLA targets after root cause analysis of repeated misses
Consistent OLA misses should trigger a review and renegotiation process, informed by root cause analysis, to set realistic and achievable targets.
What role does continuous improvement play in automation & incident orchestration for CIM certified professionals?
Answer: It drives ongoing enhancement of practices, processes, and outcomes through systematic evaluation
Continuous improvement is fundamental to professional practice in automation & incident orchestration, involving regular evaluation, feedback integration, and process enhancement to maintain high standards.
What does OLA stand for in IT service management?
Answer: Operational Level Agreement
OLA stands for Operational Level Agreement, which is an internal agreement between support groups outlining their responsibilities toward each other in delivering services.
Which type of escalation should be triggered when an incident is likely to cause reputational damage to the organization?
Answer: Hierarchical escalation involving senior management and possibly communications teams
Reputational risk requires senior management awareness and may involve communications or legal teams, making hierarchical escalation appropriate.
Which of the following best describes 'cyber resilience' in the context of incident management and business continuity?
Answer: The capacity to anticipate, withstand, recover from, and adapt to adverse cyber conditions
Cyber resilience integrates cybersecurity and business continuity principles, acknowledging that some incidents will succeed and focusing on minimizing impact and enabling rapid recovery.
During a prolonged incident, which practice helps maintain stakeholder confidence even when resolution progress is slow?
Answer: Providing regular honest updates with actions being taken and expected next steps
Transparent, action-oriented updates sustain credibility and demonstrate active management even without resolution.
What is 'escalation avoidance' and why is it valued in service desk operations?
Answer: Resolving incidents at the lowest possible tier through knowledge, tools, and empowerment to reduce cost and improve speed
Escalation avoidance means equipping Tier 1 to resolve more incidents without handoffs, which lowers cost, improves user experience, and reduces resolution time.
Which categorization model uses a hierarchical structure such as 'Type > Category > Sub-category' for classifying incidents?
Answer: Multi-tiered categorization model
A multi-tiered categorization model organizes incidents into hierarchical levels, enabling precise classification and richer trend reporting.
What is the PRIMARY purpose of a risk register in incident management?
Answer: To track identified risks, their scores, owners, and treatment status
A risk register is a living document that records all identified risks along with their assessments, owners, and mitigation plans.
In a multi-team incident response, who is typically responsible for managing external communications?
Answer: The Communications Lead or Public Relations representative
The Communications Lead owns external messaging to customers, media, and regulators, freeing the Incident Commander to focus on resolution.