nerdexam
GIAC

GSLC · Question #158

Management has asked you to perform a risk audit and report back on the results. Bonny, a project team member asks you what a risk audit is. What do you tell Bonny?

The correct answer is B. A risk audit is a review of the effectiveness of the risk responses in dealing with identified risks and. A risk audit is a formal examination of whether risk responses are working effectively, not simply a review of risk probability, impact scores, or the status of occurred risks.

Risk Management & Compliance

Question

Management has asked you to perform a risk audit and report back on the results. Bonny, a project team member asks you what a risk audit is. What do you tell Bonny?

Options

  • AA risk audit is a review of all the risks that have yet to occur and what their probability of happening are
  • BA risk audit is a review of the effectiveness of the risk responses in dealing with identified risks and
  • CA risk audit is an audit of all the risks that have occurred in the project and what their true impact on
  • DA risk audit is a review of all the risk probability and impact for the risks, which are still present in the

How the community answered

(57 responses)
  • A
    5% (3)
  • B
    89% (51)
  • C
    4% (2)
  • D
    2% (1)

Why each option

A risk audit is a formal examination of whether risk responses are working effectively, not simply a review of risk probability, impact scores, or the status of occurred risks.

AA risk audit is a review of all the risks that have yet to occur and what their probability of happening are

Reviewing risks that have yet to occur and assessing their probability describes ongoing risk monitoring or risk reassessment activities, not a formal audit of response effectiveness.

BA risk audit is a review of the effectiveness of the risk responses in dealing with identified risks andCorrect

A risk audit examines and documents the effectiveness of risk responses in dealing with identified risks and their root causes, evaluating whether the planned responses produced the intended outcomes. It is a distinct process from risk reassessment or monitoring because it focuses on auditing the risk management process itself rather than tracking risk status. This formal evaluation helps determine if adjustments to risk response strategies are needed.

CA risk audit is an audit of all the risks that have occurred in the project and what their true impact on

Reviewing risks that have already occurred and their actual impact describes a lessons-learned or post-mortem review, which is separate from auditing whether responses were effective.

DA risk audit is a review of all the risk probability and impact for the risks, which are still present in the

Reviewing probability and impact for risks still active in the project describes risk reassessment, a separate process from auditing the effectiveness of existing risk responses.

Concept tested: Risk audit purpose and scope in project management

Topics

#risk audit#risk response effectiveness#risk monitoring#risk management process

Community Discussion

No community discussion yet for this question.

Full GSLC Practice