CTFL_SYLL_4.0 · Question #102
Which of the following provides two defined risk response actions to help control product risk?
The correct answer is D. Transfer risk, Accept risk. Transfer risk and Accept risk are both formally recognized risk response strategies in standard risk management frameworks (including ISTQB). Transfer risk means shifting the risk to a third party (e.g., outsourcing, insurance), while Accept risk means acknowledging the risk…
Question
Which of the following provides two defined risk response actions to help control product risk?
Options
- ADeny risk, Mitigate risk by testing
- BAccept risk, Abandon risk
- CAbandon risk, Delay risk
- DTransfer risk, Accept risk
How the community answered
(23 responses)- A4% (1)
- B4% (1)
- D91% (21)
Explanation
Transfer risk and Accept risk are both formally recognized risk response strategies in standard risk management frameworks (including ISTQB). Transfer risk means shifting the risk to a third party (e.g., outsourcing, insurance), while Accept risk means acknowledging the risk and deciding to live with its potential consequences - both are legitimate, defined controls over product risk.
Option A fails because "Deny risk" is not a defined risk response strategy - ignoring or denying a risk is not a control action and has no place in formal risk management.
Options B and C both include "Abandon risk," which is not a formally defined risk response term; it conflates elements of avoidance and acceptance but is recognized in neither standard testing nor project management frameworks. "Delay risk" (Option C) is similarly not a defined strategy.
Memory tip: Use the acronym TAMA - Transfer, Avoid, Mitigate, Accept - as the four standard risk responses. Whenever an answer choice includes a word outside this set ("Deny," "Abandon," "Delay"), it's a distractor.
Topics
Community Discussion
No community discussion yet for this question.