Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CIPS Exam L4M2 Topic 6 Question 22 Discussion

Actual exam question for CIPS's L4M2 exam
Question #: 22
Topic #: 6
[All L4M2 Questions]

When should procurement professional tolerate a risk?

Show Suggested Answer Hide Answer
Suggested Answer: C

Risk control is the process by which an organization reduces the likelihood of a risk event occurring or mitigates the effects that risk should it occur. Our preferred way to determine your risk control strategy is to use the four T's Process:

Transferring Risk can be achieved through the use of various forms of insurance, or the payment to third parties who are prepared to take the risk on behalf of the organization

Tolerating Risk is where no action is taken to mitigate or reduce a risk. This may be because the cost of instituting risk reduction or mitigation activity is not cost-effective or the risks of impact are at so low that they are deemed acceptable to the business (such as some trivial annoyance). Even when these risks are tolerated they should be monitored because future changes may make it no longer tolerable.

Treating Risk is a method of controlling risk through actions that reduce the likelihood of the risk occurring or minimize its impact prior to its occurrence. Also, there are contingent measures that can be developed to reduce the impact of an event once it has occurred.

Terminating Risk is the simplest and most often ignored method of dealing with risk. It is the ap-proach that should be most favored where possible and simply involves risk elimination. This can be done by altering an inherently risky process or practice to remove the risk. The same can be used when reviewing practices and processes in all areas of the business.

If an item presents a risk and can be changed or removed without it materially affecting the busi-ness, then removing the risk should be the first option considered; rather than attempting the treat, tolerate or transfer it.


LO 3, AC 3.3

Contribute your Thoughts:

Gerald
5 days ago
Easy peasy. Procurement pros should only tolerate risks that don't disrupt operations or threaten the company's existence. Anything else is just asking for trouble.
upvoted 0 times
...
German
10 days ago
The historical meeting records part seems important, I'll make sure to pay close attention to that.
upvoted 0 times
...
Detra
16 days ago
Okay, let's think this through step-by-step. The destination IP is 192.168.2.150, and the routing table shows a match for the 192.168.2.0/24 network on the wlan0 interface with a gateway of 192.168.178.1. I think the answer is A.
upvoted 0 times
...
Jacquline
16 days ago
I think I encountered a question about using 802.1x and VLAN assignments before. Option B might be a potential approach, but I'm not certain about the specifics.
upvoted 0 times
...
Sarah
17 days ago
Okay, let's think this through. In a two-step approval process, the hiring manager and the director have a hierarchical relationship, with the director being the higher-level approver. So I believe the correct answer is C - a hierarchical relationship.
upvoted 0 times
...
Frederica
19 days ago
Hmm, I'm a bit unsure about this one. The options seem similar, but I'll try to pick the one that most clearly explains why disabling detections would be helpful.
upvoted 0 times
...

Save Cancel