Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 Exam CSSLP Topic 11 Question 47 Discussion

Actual exam question for ISC2's Certified Secure Software Lifecycle Professional exam
Question #: 47
Topic #: 11
[All Certified Secure Software Lifecycle Professional Questions]

A part of a project deals with the hardware work. As a project manager, you have decided to hire a company to deal with all hardware work on the project. Which type of risk response is this?

Show Suggested Answer Hide Answer
Suggested Answer: C

When you are hiring a third party to own risk, it is known as transference risk response.

Transference is a strategy to mitigate negative risks or threats. In this strategy, consequences and the ownership of a risk is transferred to a

third party. This strategy does not eliminate the risk but transfers responsibility of managing the risk to another party. Insurance is an

example of transference.

Answer B is incorrect. The act of spending money to reduce a risk probability and impact is known as mitigation.

Answer A is incorrect. Exploit is a strategy that may be selected for risks with positive impacts where the organization wishes to ensure

that the opportunity is realized.

Answer D is incorrect. When extra activities are introduced into the project to avoid the risk, this is an example of avoidance.


Contribute your Thoughts:

Currently there are no comments in this discussion, be the first to comment!


Save Cancel