CPSM CSPM Quality, Risk & Procurement Management 3 — Questions and Answers
Question 1: A project team uses statistical process control (SPC) to monitor software defect rates. When should corrective action be triggered?
- Whenever any defect is found
- When data points fall outside the control limits (Correct answer)
- After three consecutive sprints complete
- When the project budget exceeds 10%
Correct answer: When data points fall outside the control limits
In SPC, data points outside control limits signal a process that is out of statistical control and requires investigation and corrective action.
Question 2: What is the primary difference between qualitative and quantitative risk analysis?
- Qualitative uses numbers; quantitative uses categories
- Qualitative prioritizes risks subjectively; quantitative models probability numerically (Correct answer)
- Qualitative is performed after the project; quantitative is performed before
- Qualitative requires external consultants; quantitative is done internally
Correct answer: Qualitative prioritizes risks subjectively; quantitative models probability numerically
Qualitative analysis ranks risks using descriptive scales (high/medium/low), while quantitative analysis uses statistical techniques to numerically model risk probability and impact.
Question 3: In a Cost-Plus-Fixed-Fee (CPFF) contract, the buyer's cost risk is considered:
- Minimal, because fees are fixed regardless of scope
- High, because the buyer reimburses all allowable costs plus a fixed fee (Correct answer)
- Eliminated, because cost savings are shared
- Transferred to a third-party insurer
Correct answer: High, because the buyer reimburses all allowable costs plus a fixed fee
Under CPFF, the buyer pays all allowable project costs plus a predetermined fixed fee, so cost overruns are borne entirely by the buyer.
Question 4: Which quality philosophy emphasizes preventing defects rather than inspecting for them after the fact?
- Total Quality Management (TQM) acceptance sampling
- Zero Defects / Prevention over inspection (Correct answer)
- Six Sigma detection-based control
- ISO 9001 post-delivery auditing
Correct answer: Zero Defects / Prevention over inspection
Prevention over inspection is a core quality principle that focuses on building quality into processes to stop defects from occurring rather than finding them later.
Question 5: A project manager identifies a technical risk that cannot be avoided. The team implements extra testing to reduce its likelihood. This is an example of which risk response?
- Transfer
- Accept
- Mitigate (Correct answer)
- Exploit
Correct answer: Mitigate
Mitigation reduces the probability or impact of a risk event, and implementing additional testing directly lowers the chance of technical failure.
Question 6: During procurement planning, a Statement of Work (SOW) serves primarily to:
- Set the payment schedule for the vendor
- Define the specific work the vendor is required to perform (Correct answer)
- Establish dispute resolution procedures
- Evaluate vendor financial stability
Correct answer: Define the specific work the vendor is required to perform
The SOW is a detailed description of the work, deliverables, and standards that the procured party is contractually obligated to fulfill.
Question 7: Which technique uses expert opinion and iterative anonymous surveys to build consensus on risk identification?
- Monte Carlo simulation
- Delphi technique (Correct answer)
- Root cause analysis
- Fault tree analysis
Correct answer: Delphi technique
The Delphi technique gathers expert opinions through successive rounds of anonymous questionnaires until consensus emerges, minimizing groupthink.
A project team uses statistical process control (SPC) to monitor software defect rates.
When should corrective action be triggered?