New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCPM Exam - Topic 5 Question 5 Discussion

Actual exam question for GIAC's GCPM exam
Question #: 5
Topic #: 5
[All GCPM Questions]

Mark is the project manager of the BFL project for his organization. He and the project team are creating a probability and impact matrix using RAG rating. There is some confusion and disagreement among the project team as to how a certain risk is important and priority for attention should be managed. Where can Mark determine the priority of a risk given its probability and impact?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Fidelia
4 months ago
Totally with you on the risk management plan! It's the go-to for this stuff.
upvoted 0 times
...
Lashawna
4 months ago
Wait, can he really find priority in the risk management plan? Seems too vague.
upvoted 0 times
...
Demetra
4 months ago
I disagree, the risk response plan is more about how to handle them, not prioritize.
upvoted 0 times
...
Sylvie
4 months ago
I think a look-up table could help too, but not as comprehensive.
upvoted 0 times
...
Dannie
5 months ago
Definitely the risk management plan! That's where priorities are set.
upvoted 0 times
...
Selma
5 months ago
The risk response plan seems more focused on how to address risks rather than prioritizing them, right? I feel like it wouldn't help much here.
upvoted 0 times
...
Lennie
5 months ago
I remember practicing with a look-up table in a similar question. It seems like that could be a good way to determine priority based on probability and impact.
upvoted 0 times
...
Marvel
5 months ago
I think the risk management plan might have some guidelines on prioritizing risks, but I'm not entirely sure if it provides a clear method for that.
upvoted 0 times
...
Noble
5 months ago
I’m not confident, but I think the project sponsor might have insights on risk priorities based on their experience. However, I doubt they would have a formal method for it.
upvoted 0 times
...
Kenneth
5 months ago
I've got a good feeling about this one. The key is recognizing that the question is asking about two related but distinct concepts - the mechanism to ensure audit standards are applied, and the purpose of that mechanism. I think the answer is B, an internal quality review process.
upvoted 0 times
...
Tyisha
5 months ago
I'm a bit confused by the wording of these options. I'll need to re-read the question and the choices a few times to make sure I understand what they're asking.
upvoted 0 times
...
Hyun
5 months ago
Okay, I've got a strategy here. I'll focus on the key details - the files are being deleted unexpectedly, so I'll want to look at user authentication and audit logs.
upvoted 0 times
...
Omega
5 months ago
Got it, I'll make sure to avoid the two options that could lead to an endless cycle of updates. That should help me solve this problem.
upvoted 0 times
...
Alfred
5 months ago
Hmm, I'm a bit unsure about this one. I know safety-critical systems are important, but I'm not totally clear on all the details. I'll try to eliminate the options that seem obviously wrong and then make my best guess.
upvoted 0 times
...
Altha
5 months ago
I just can't remember if SSL decryption is absolutely necessary for this. Did we cover that in the practice tests?
upvoted 0 times
...

Save Cancel