PMI-RMP Threat Response Strategies 2 — Questions and Answers
Question 1: A risk owner decides to relocate a server to a different data center to eliminate a flooding threat entirely. Which threat response strategy is this?
- Avoid (Correct answer)
- Transfer
- Mitigate
- Accept
Correct answer: Avoid
Eliminating the threat entirely by changing the project plan so the risk can no longer occur is the Avoid strategy.
Question 2: Which threat response strategy involves shifting both the impact and ownership of a risk to a third party?
- Mitigate
- Transfer (Correct answer)
- Avoid
- Escalate
Correct answer: Transfer
Transfer moves the negative impact and response ownership to a third party, often via insurance or contracts.
Question 3: A team adds extra testing cycles to lower the probability of a defect-related threat. This is best described as:
- Accept
- Avoid
- Mitigate (Correct answer)
- Transfer
Correct answer: Mitigate
Reducing the probability or impact of a threat to an acceptable level is the Mitigate strategy.
Question 4: When a project team establishes a contingency reserve but takes no proactive action against a low-priority threat, which strategy is being used?
- Active acceptance (Correct answer)
- Passive acceptance
- Avoid
- Mitigate
Correct answer: Active acceptance
Active acceptance acknowledges the risk and sets aside a contingency reserve without changing the plan to address it.
Question 5: A threat is outside the project manager's authority and affects the wider organization. The appropriate response is to:
- Accept it
- Escalate it (Correct answer)
- Transfer it
- Mitigate it
Correct answer: Escalate it
Escalation is used when a threat is beyond the project's scope or the PM's authority and must be addressed at a higher level.
Question 6: Outsourcing a complex software module to a specialized vendor with a fixed-price contract to reduce a threat is an example of:
- Avoid
- Transfer (Correct answer)
- Accept
- Escalate
Correct answer: Transfer
A fixed-price contract transfers the cost-overrun threat to the vendor, making it a Transfer strategy.
Question 7: Which document records the chosen threat response strategy and the assigned risk owner?
- Risk register (Correct answer)
- Issue log
- Stakeholder register
- Assumption log
Correct answer: Risk register
The risk register captures identified risks, their responses, and the assigned risk owners.
A risk owner decides to relocate a server to a different data center to eliminate a flooding threat entirely.
Which threat response strategy is this?