According to the PMBOK® Guide, specifically within the Plan Risk Responses process, risks are categorized as either threats (negative risks) or opportunities (positive risks). There are five specific strategies for responding to threats.
Strategies for Threats:
Escalate: The threat is outside the scope of the project or the project manager’s authority; it is passed to a higher level in the organization.
Avoid: The team acts to eliminate the threat or protect the project from its impact (e.g., changing the project management plan).
Transfer: Shifting the impact and ownership of a threat to a third party (e.g., insurance or warranties).
Mitigate: Taking action to reduce the probability of occurrence or the impact of the threat (e.g., conducting more tests).
Accept: Acknowledging the threat exists but taking no proactive action unless it occurs (passive or active acceptance).
Analysis of other options:
Option B: Includes " Share, " which is a strategy for opportunities (positive risks), not threats.
Option C: Includes " Exploit, " which is a strategy for opportunities. It involves ensuring that the opportunity definitely happens.
Option D: Includes " Prioritize, " which is an activity performed during Qualitative Risk Analysis, not a response strategy itself.
Per PMI standards, selecting the appropriate response depends on the severity of the threat and the project ' s risk threshold. Escalate, accept, and mitigate are three of the valid strategies provided in the list of five for handling negative project risks.