exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 246 discussion

Actual exam question from Isaca's CRISC
Question #: 246
Topic #: 1
[All CRISC Questions]

A part of a project deals with the hardware work. As a project manager, you have decided to hire a company to deal with all hardware work on the project. Which type of risk response is this?

  • A. Transference
  • B. Mitigation
  • C. Avoidance
  • D. Exploit
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
When you are hiring a third party to own risk, it is known as transference risk response.
Risk transfer means that impact of risk is reduced by transferring or otherwise sharing a portion of the risk with an external organization or another internal entity.
Transfer of risk can occur in many forms but is most effective when dealing with financial risks. Insurance is one form of risk transfer.
Incorrect Answers:
B: The act of spending money to reduce a risk probability and impact is known as mitigation.
C: When extra activities are introduced into the project to avoid the risk, this is an example of avoidance.
D: Exploit is a strategy that may be selected for risks with positive impacts where the organization wishes to ensure that the opportunity is realized.

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dummee
3 days, 5 hours ago
Selected Answer: B
Answer is B (Mitigation), even if you outsource the work the ACCOUNTABILITY is still you. In transference, the third party will shoulder the burden of risk..
upvoted 1 times
...
Ndy
6 months, 2 weeks ago
Risk Mitigation is the answer and NOT transfer.
upvoted 1 times
...
Parth9
2 years, 10 months ago
Risk Transfer is the right answer
upvoted 4 times
...
altamoo7
3 years, 2 months ago
Why not mitigation because he hire company not get contract with company to handle the risk?
upvoted 1 times
Wedeyhere2
2 years, 11 months ago
@Altamoo7, it's not mitigation because the mitigation approach means you're decided to deal with the risk directly whereas in this case you're passing on the tasks to someone else. The key difference is passing on the risk to someone else to deal with.
upvoted 6 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago