PMI-RMP Sample Questions

PMI-RMP Sample Questions & Answers

Most of the questions target identifying risks tied closely with analyzing them both qualitatively and quantitatively, plus setting risk thresholds during strategy and planning, monitoring secondary and residual risk after a response, and closing out the risk register.

Launch the full PMI-RMP simulator →

Showing 10 of 20 free samples.

  1. Question 1BeginnerSelect 2

    Risk Strategy and Planning · Document the risk management plan

    Select TWO components that are typically included in the Risk Management Plan to define how risk management activities will be performed.

    Show answer & explanation

    Correct answers: C, D

    The Risk Management Plan defines the Methodology (approaches, tools, and data sources) and Funding (budget for risk management activities). It plans how to manage risk, but does not contain the actual risks themselves (Risk Register) or the specific responses (Risk Response Plan).

    Funding is a key component of the Risk Management Plan, detailing the budget allocated for risk management activities.

  2. Question 2Beginner

    Risk Strategy and Planning · Document the risk management plan

    True or False: The Risk Management Plan includes the specific list of identified risks and their planned responses.

    Show answer & explanation

    Correct answer: B

    This is False. The Risk Management Plan is a subsidiary plan of the Project Management Plan that describes how risk management activities will be structured and performed. The specific risks and responses are documented in the Risk Register, which is a project document, not part of the Risk Management Plan itself.

  3. Question 3Advanced

    Risk Strategy and Planning · Establish risk management strategy

    When defining risk probability and impact scales during the planning phase, a team decides to use a non-linear scale (e.g., 0.05, 0.10, 0.20, 0.40, 0.80) for impact. What is the primary advantage of using this type of scale over a linear one (1, 2, 3, 4, 5)?

    Show answer & explanation

    Correct answer: C

    Non-linear scales (like logarithmic or exponential) are used to emphasize high-impact events. They prevent high-impact risks from being 'averaged out' by low probability in simple linear multiplication, ensuring that catastrophic risks remain visible and prioritized.

  4. Question 4Intermediate

    Risk Strategy and Planning · Establish risk management strategy

    You are leading a workshop to define the 'Risk Strategy' for a new program. One stakeholder suggests using a 'Prompt List' during future identification sessions. What is the strategic benefit of including this tool in your Risk Management Plan?

    Show answer & explanation

    Correct answer: B

    A Prompt List is a predetermined list of risk categories (e.g., PESTLE, TECOP, VUCA) used as a framework to facilitate risk identification. Strategically, it helps reduce cognitive bias and ensures that the team doesn't focus solely on technical risks while ignoring external or commercial factors.

  5. Question 5Beginner

    Risk Strategy and Planning · Document the risk management plan

    The ________ is the document that defines the specific roles and responsibilities of risk management team members, including who is responsible for approving the Risk Management Plan itself.

    Show answer & explanation

    Correct answer: C

    The Risk Management Plan is the specific document where roles, responsibilities, and authority levels for risk management activities are defined.

  6. Question 6Advanced

    Risk Strategy and Planning · Confirm risk thresholds based on risk appetites

    Case Study: Global FinTech Migration

    A global financial services company is migrating its legacy mainframe systems to a cloud-based architecture. The project involves 500+ staff across 4 regions.

    Paragraph 1: The CEO has stated that 'data security is paramount,' but the CTO is pushing for 'speed to market' to beat a competitor. This conflict is creating ambiguity in risk prioritization. The Risk Manager needs to formalize the risk approach.

    Paragraph 2: During initial planning, the team identified that the new cloud provider has a 99.9% uptime guarantee, but the legacy system had 99.999%. The business continuity team flags this as a critical issue.

    Based on the scenario, what is the FIRST action the Risk Manager should take to resolve the conflict between the CEO and CTO regarding risk strategy?

    Show answer & explanation

    Correct answer: D

    The conflict arises from undefined risk appetites. The Risk Manager must facilitate a session to quantify these appetites into thresholds (e.g., 'Zero tolerance for data loss' vs. 'Acceptable 2-week delay'). This provides an objective framework for prioritizing risks when security and speed conflict.

  7. Question 7Intermediate

    Risk Identification · Conduct risk identification exercises

    Which of the following techniques is BEST suited for identifying risks in a situation where stakeholders may be hesitant to speak freely due to the presence of senior management or dominant personalities?

    Show answer & explanation

    Correct answer: D

    The Delphi Technique uses anonymous questionnaires circulated to experts. By keeping responses anonymous, it removes the bias of hierarchy and groupthink, allowing for honest risk identification without fear of retribution or influence from dominant personalities.

  8. Question 8Intermediate

    Risk Identification · Develop risk register

    During a risk identification session, the team identifies that 'The concrete supplier might be late.' To make this a high-quality risk statement, how should it be structured?

    Show answer & explanation

    Correct answer: B

    A proper risk statement follows the 'Cause -> Event -> Impact' meta-language format. This structure provides the necessary context for analysis and response planning. Simply stating the event ('supplier might be late') is insufficient.

  9. Question 9Beginner

    Risk Identification · Develop risk register

    You are reviewing the Risk Register and notice several entries like 'Poor communication' and 'Lack of resources.' What is the primary problem with these entries?

    Show answer & explanation

    Correct answer: D

    'Poor communication' is a fact or a cause, not an uncertain event. A proper risk would be 'Because of poor communication channels, key stakeholders may miss requirements updates, causing rework.' Identifying causes as risks leads to ineffective response planning.

  10. Question 10IntermediateSelect 2

    Risk Identification · Conduct risk identification exercises

    Select TWO information sources that are commonly analyzed during the 'Identify Risks' process to discover risks related to project constraints.

    Show answer & explanation

    Correct answers: A, D

    Duration estimates (and their basis) are analyzed to find risks related to schedule constraints. Tight or optimistic estimates are common sources of schedule risk.

    The Assumption Log contains assumptions and constraints. Analyzing constraints (limits on time, budget, resources) is a primary method for identifying risks (e.g., 'What if we can't meet this hard deadline?').

Ready for the real thing?

The full PMI-RMP simulator has every exam-style question, timed mode, and instant scoring.