1. Right Answer: A,B,C
Explanation: The various tools & techniques used in the identify risk process are as follows: Documentation reviews Information gathering technique Checklist analysis Assumption analysis Diagramming techniques SWOT analysis Expert judgment
2. Right Answer: B
Explanation: The controls within the schedule management plan can shape how quantitative risk analysis will be performed on the schedule.Schedule management plan also describes how the schedule contingencies will be reported and assessed.Incorrect Answers:A: When risks are likely to happen is important, but it is not the best answer for this questionC: This is not a valid answer for this question throughout the project, but it is not scheduled during the quantitative risk analysis process.D: Risks may affect the project schedule, but this is not the best answer for the question.
3. Right Answer: D
Explanation: Preventative controls are the controls that detect the problem before it occurs. They attempt to predict potential problems and make adjustments to prevent those problems to occur in near future. This prediction is being made by monitoring both the system's operations and its inputs.Incorrect Answers:A: Deterrent controls are similar to the preventative controls, but they diminish or reverse the attraction of the environment to prevent risk from occurring instead of making adjustments to the environment.B: Detective controls simply detect and report on the occurrence of a problems. They identify specific symptoms to potential problems.C: Compensation controls ensure that normal business operations continue by applying appropriate resource.
4. Right Answer: A,C,D
Explanation: The internal environment for risk management is the foundational level of the COSO ERM framework, which describes the philosophical basics of managing risks within the implementing enterprise. The different aspects of the internal environment include the enterprise's: Philosophy on risk management Risk appetite Attitudes of Board of Directors Integrity and ethical values Commitment to competence Organizational structure Authority and responsibility Human resource standards
5. Right Answer: D
Explanation: Catastrophic risk causes critical financial losses that have the possibility of bankruptcy.Incorrect Answers:A: Marginal risk causes financial loss in a single line of business and a reduced return on IT investment.B: It causes minimal impact on a single line of business affecting their ability to deliver services or products.C: Critical risk causes serious financial losses in more than one line of business with a loss in productivity.