PK0-005 Practice Question: Basics of IT Infrastructure and IT Project Management
A project manager is conducting a risk assessment for an IT infrastructure project that involves migrating critical applications to a new data center. The project manager needs to identify potential risks related to hardware failures, network outages, and data loss. Which TWO risk response strategies are most appropriate for addressing these technical risks? (Choose two.)
⚠ Common exam trap
The trap here is assuming that transferring risk via insurance is a proactive technical safeguard, but it only addresses financial impact, not prevention or recovery.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Mitigate by implementing a robust backup and disaster recovery plan
The correct strategies are mitigation through redundant hardware and network paths, and mitigation through a robust backup and disaster recovery plan. Both reduce the probability or impact of technical risks like hardware failures, network outages, and data loss. Transfer and acceptance do not proactively address these risks, and avoidance would cancel the project, which is not feasible for a critical migration.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Transfer by purchasing insurance for data loss
Why it's wrong here
Transferring risk through insurance shifts the financial impact of data loss to a third party, but it does not prevent the loss from occurring. For technical risks like hardware failures, insurance does not address the root cause or ensure business continuity. While it can be part of a risk management plan, it is not the most appropriate strategy when the goal is to prevent or reduce technical failures.
- ✓
Mitigate by implementing a robust backup and disaster recovery plan
Why this is correct
Mitigation through a robust backup and disaster recovery plan reduces the impact of data loss and speeds recovery after an incident. It directly addresses the risk of data loss by ensuring that data can be restored. This is a proactive strategy that complements redundancy measures and is essential for protecting critical applications during a data center migration.
- ✗
Accept by documenting the risks and taking no action
Why it's wrong here
Accepting risks means acknowledging them without taking proactive measures. For critical applications, accepting hardware failures, network outages, or data loss without action could lead to severe business impact. This strategy is typically used for low-priority risks. In this scenario, the project manager needs to actively address technical risks, so acceptance is not suitable.
- ✗
Avoid by canceling the data center migration
Why it's wrong here
Avoiding the risk by canceling the migration eliminates the risk but also eliminates the project's benefits. This strategy is extreme and not appropriate when the project is critical to the organization. The project manager should instead manage the risks while proceeding with the migration. Avoidance is usually reserved for risks with unacceptable impacts and no viable mitigation.
- ✓
Mitigate by implementing redundant hardware and network paths
Why this is correct
Mitigation reduces the probability or impact of a risk. Implementing redundant hardware and network paths directly addresses hardware failures and network outages by providing failover capabilities. This strategy is appropriate for technical risks because it lowers the chance of downtime and ensures continuity. It is a proactive approach that aligns with the project's need to protect critical applications during migration.
Go deeper
Related to this question
About these practice questions
Courseiva writes every PK0-005 question from scratch — 954 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This PK0-005 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PK0-005 exam.