Courseiva

CCNA It Project Management Questions

62 questions · It Project Management topic · All types, answers revealed

1
MCQhard

A project manager is leading the deployment of a new customer-facing mobile application that will use a RESTful API. The API will be hosted on a public cloud and must handle sensitive user data. The project sponsor is concerned about security and wants to ensure that the API uses a standard protocol for authorization and that tokens are not easily compromised. Which approach should the project manager recommend?

A.API keys embedded in client-side code
B.Basic authentication over HTTP
C.SAML assertions sent over HTTP
D.OAuth 2.0 with bearer tokens over HTTPS
AnswerD

OAuth 2.0 is a standard authorization framework that uses access tokens to grant limited access to resources. When used over HTTPS, bearer tokens are protected in transit. This approach allows scopes, expiration, and revocation, directly addressing the sponsor's security concerns. It is the recommended standard for securing RESTful APIs in a public cloud.

Why this answer

The sponsor requires a standard authorization protocol with protected tokens for a RESTful API. OAuth 2.0 with bearer tokens over HTTPS provides scoped, revocable access tokens that are encrypted in transit. Basic authentication, API keys in client code, and SAML over HTTP are either insecure or not designed for API authorization, so they fail to meet the security requirements.

Exam trap

The trap here is assuming that any token-based scheme, such as API keys or SAML, is equivalent to OAuth 2.0 for API authorization, when OAuth 2.0 is the standard specifically designed for delegated authorization with scoped access tokens.

2
MCQeasy

A company is deploying a new VoIP system. Which network infrastructure component is most critical for ensuring voice quality?

A.Cable category
B.Switch port density
C.Firewall throughput
D.Switch QoS settings
AnswerD

QoS settings on switches classify and prioritise voice traffic, giving latency-sensitive RTP packets precedence over bulk data. This queuing mechanism prevents jitter and packet loss that degrade call quality, which raw bandwidth alone cannot guarantee.

Why this answer

Voice quality over VoIP is highly sensitive to latency, jitter, and packet loss. Switch QoS settings (e.g., 802.1p/DSCP marking, strict priority queuing) ensure that voice traffic is prioritized over data traffic, preventing delays and dropped packets that degrade call quality. Without proper QoS, even high-bandwidth links will suffer from poor Mean Opinion Scores (MOS).

Exam trap

The trap here is that candidates often confuse bandwidth capacity (throughput, cable speed) with traffic prioritization, assuming that faster cables or higher firewall throughput alone guarantee voice quality, when in fact QoS is the only mechanism that prevents jitter and packet loss for real-time traffic.

How to eliminate wrong answers

Option A is wrong because cable category (e.g., Cat5e vs Cat6) affects maximum data rate and crosstalk but does not directly control traffic prioritization or latency for voice packets; VoIP can run adequately over Cat5e if QoS is configured. Option B is wrong because switch port density refers to the number of ports available, which impacts scalability and connectivity, not the quality of voice transmission on existing links. Option C is wrong because firewall throughput measures the maximum data rate the firewall can process, which is a capacity metric; while insufficient throughput can cause bottlenecks, it does not provide the per-packet prioritization needed to maintain low jitter and latency for real-time voice traffic.

3
Multi-Selecthard

Which THREE of the following are best practices for managing IT infrastructure projects? (Choose three.)

Select 3 answers
A.Implement change control processes
B.Minimize documentation to reduce overhead
C.Identify stakeholders and their requirements early
D.Avoid risk management to save time
E.Establish a baseline for scope, schedule, and cost
AnswersA, C, E

Change control processes govern how infrastructure modifications are requested, assessed, approved and documented, preventing uncoordinated alterations to production environments. This satisfies the best-practice requirement by keeping the project's technical baseline stable and auditable throughout delivery.

Why this answer

Option A is correct because implementing change control processes ensures that modifications to scope, schedule, or configuration are formally reviewed, approved, and documented, preventing uncontrolled changes that can derail an infrastructure project. Option C is correct because identifying stakeholders and their requirements early aligns the project with business and technical needs, reduces late-stage surprises, and improves acceptance of the delivered infrastructure. Option E is correct because establishing a baseline for scope, schedule, and cost provides a reference point for measuring performance, detecting variances, and controlling the project through earned value or similar techniques.

Option B is not a best practice because minimizing documentation increases risk, reduces traceability, and undermines knowledge transfer and auditability. Option D is not a best practice because avoiding risk management leaves the project exposed to unidentified threats and issues that can cause delays, cost overruns, or failures.

Exam trap

The PK0-005 exam often tests the misconception that minimizing documentation or skipping risk management saves time, but in reality, these shortcuts lead to rework, unplanned outages, and project failure in complex IT infrastructure environments.

4
MCQhard

A project manager is overseeing the replacement of aging physical servers with a hyperconverged infrastructure (HCI) solution. During the planning phase, the project manager must identify a risk that could affect the project's ability to meet its schedule. Which action best demonstrates proactive risk management?

A.Adding a contingency reserve to the project budget only.
B.Waiting until the risk occurs and then creating a change request.
C.Informing the sponsor that all risks will be handled if they occur.
D.Documenting the risk in a risk register and assigning an owner.
AnswerD

Documenting the risk in a risk register and assigning an owner is a core proactive risk management step. It ensures the risk is tracked, analyzed, and monitored throughout the HCI project. The owner is responsible for implementing response plans and reporting status. This action transforms an identified risk into a managed item, enabling the project manager to reduce the likelihood or impact before it affects the schedule.

Why this answer

Proactive risk management involves identifying risks early, documenting them in a risk register, assigning owners, and planning responses. For the HCI replacement, this allows the team to monitor triggers and act before schedule impacts occur. Waiting for risks to happen, relying only on contingency budget, or promising to handle issues later are reactive approaches that do not prevent or minimize schedule disruption.

Exam trap

The trap here is equating any risk-related action, such as adding contingency funds, with proactive risk management, when true proactivity requires identification, ownership, and planned responses.

5
MCQhard

A large organization is deploying a new ERP system. The infrastructure team provisions a cluster of virtual machines for the application and a separate database server. During load testing with typical user loads, the database server shows high I/O wait times. The storage administrator confirms that the storage array has sufficient capacity and the disks are healthy. The hypervisor shows no CPU or memory pressure. Which of the following is the most likely cause of the high I/O wait?

A.Network bandwidth saturation between the database and application servers.
B.Insufficient memory on the database server causing paging.
C.Misconfigured RAID level, such as using RAID 5 for a write-intensive workload.
D.CPU overutilization on the database server.
AnswerC

RAID 5's parity write penalty makes it poor for write-intensive database workloads, producing high I/O wait despite healthy disks and spare capacity. CPU, memory and capacity are already excluded, so the RAID level is the likely cause.

Why this answer

RAID 5 uses parity-based striping, which incurs a write penalty (each write requires four I/O operations: read old data, read old parity, write new data, write new parity). For a write-intensive workload like an ERP database, this overhead causes high I/O wait times even when disks are healthy and capacity is sufficient. The correct answer is C because the misconfigured RAID level directly explains the observed symptom.

Exam trap

The trap here is that candidates assume high I/O wait always means a disk hardware failure or capacity issue, but the question explicitly states disks are healthy and capacity is sufficient, steering the answer toward a RAID-level misconfiguration that causes excessive write overhead.

How to eliminate wrong answers

Option A is wrong because network bandwidth saturation would manifest as latency or timeouts between the application and database servers, not as high I/O wait on the database server itself (I/O wait measures disk subsystem delays, not network delays). Option B is wrong because insufficient memory causing paging would show high memory usage and swap activity, but the hypervisor confirms no memory pressure, and paging would also increase CPU usage due to page fault handling, which is not observed. Option D is wrong because CPU overutilization would appear as high CPU usage or run queue length in the hypervisor, but the hypervisor shows no CPU pressure, and high I/O wait specifically indicates the CPU is idle waiting for disk operations to complete.

6
Matchingmedium

Match each acronym to its definition in project management.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Statement of Work

Work Breakdown Structure

Request for Proposal

Return on Investment

Key Performance Indicator

Why these pairings

The correct matches are PMP with Project Management Professional, WBS with Work Breakdown Structure, EVM with Earned Value Management, and ROI with Return on Investment. Common confusions include mixing up ROI and PMP definitions, or confusing WBS with EVM.

7
MCQhard

A project manager is implementing a new enterprise resource planning (ERP) system. The project team is distributed across three time zones, and the project manager needs to ensure that all team members have access to the latest project documents and can collaborate in real time. Which technology solution best meets these requirements?

A.Shared network drive with file locking
B.Email distribution lists for document sharing
C.Local file server in the headquarters office
D.Cloud-based collaboration platform with version control and real-time editing
AnswerD

A cloud-based collaboration platform with version control and real-time editing, such as Microsoft SharePoint or Google Workspace, provides centralized access to documents from any location and time zone. It supports simultaneous editing, chat, and notifications, ensuring all team members can collaborate in real time. This directly addresses the need for access to the latest documents and real-time collaboration across distributed teams.

Why this answer

The cloud-based collaboration platform with version control and real-time editing is the best solution because it provides centralized, always-accessible document repositories and supports simultaneous editing and communication. This meets the needs of a distributed team across multiple time zones. Other options lack real-time collaboration or create version control issues, making them unsuitable for this ERP implementation project.

Exam trap

The trap here is assuming that a shared network drive or email is sufficient for collaboration, but they do not provide real-time editing or version control for a distributed team.

8
Multi-Selectmedium

A project manager is conducting a risk assessment for an IT infrastructure project that involves migrating critical applications to a new data center. The project manager needs to identify potential risks related to hardware failures, network outages, and data loss. Which TWO risk response strategies are most appropriate for addressing these technical risks? (Choose two.)

Select 2 answers
A.Transfer by purchasing insurance for data loss
B.Mitigate by implementing a robust backup and disaster recovery plan
C.Accept by documenting the risks and taking no action
D.Avoid by canceling the data center migration
E.Mitigate by implementing redundant hardware and network paths
AnswersB, E

Mitigation through a robust backup and disaster recovery plan reduces the impact of data loss and speeds recovery after an incident. It directly addresses the risk of data loss by ensuring that data can be restored. This is a proactive strategy that complements redundancy measures and is essential for protecting critical applications during a data center migration.

Why this answer

The correct strategies are mitigation through redundant hardware and network paths, and mitigation through a robust backup and disaster recovery plan. Both reduce the probability or impact of technical risks like hardware failures, network outages, and data loss. Transfer and acceptance do not proactively address these risks, and avoidance would cancel the project, which is not feasible for a critical migration.

Exam trap

The trap here is assuming that transferring risk via insurance is a proactive technical safeguard, but it only addresses financial impact, not prevention or recovery.

9
MCQmedium

An IT project manager is leading a project to upgrade the network infrastructure in a branch office. The project sponsor is concerned about the impact of network downtime on daily operations. The project manager needs to ensure that network availability is maintained during the upgrade. Which of the following should the project manager implement to minimize downtime?

A.Schedule the upgrade in phases across multiple weekends.
B.Perform the upgrade during off-peak hours.
C.Notify users well in advance about the planned downtime.
D.Implement redundant network components and failover mechanisms.
AnswerD

Implementing redundancy with failover ensures that if one component fails or is taken offline for upgrade, another takes over seamlessly, maintaining network availability. This directly addresses the sponsor's concern by minimizing or eliminating downtime. Redundancy can be achieved through redundant switches, routers, and links, combined with protocols like VRRP or HSRP for automatic failover.

Why this answer

Redundant network components with failover mechanisms provide continuous availability by allowing traffic to switch to backup paths or devices during upgrades or failures. This meets the sponsor's requirement to minimize downtime. Other options either reduce the impact of downtime or communicate it, but do not eliminate it, and thus do not satisfy the need for high availability during the infrastructure upgrade.

Exam trap

The trap here is assuming that scheduling work during off-peak hours or notifying users eliminates downtime, when in fact only redundancy and failover can maintain availability.

10
MCQeasy

A project manager is planning the installation of a new server that will host a database. The server requires a storage solution that provides high performance and redundancy. The project manager must choose between different RAID levels. Which RAID level should the project manager select to achieve both performance and redundancy?

A.RAID 1
B.RAID 6
C.RAID 0
D.RAID 5
AnswerD

RAID 5 uses striping with distributed parity, providing both redundancy and improved performance. It allows reads to be distributed across multiple drives and can sustain a single drive failure without data loss. For a database server, RAID 5 offers a good balance of performance, redundancy, and storage efficiency, making it a common choice for such workloads, though write performance may be slightly lower due to parity calculations.

Why this answer

RAID 5 provides a balance of performance and redundancy by striping data and parity across multiple drives. It allows for continued operation if one drive fails and improves read performance through parallel access. While RAID 6 offers more redundancy, its dual parity reduces write performance.

RAID 1 lacks performance benefits, and RAID 0 lacks redundancy, so RAID 5 is the appropriate choice for a database server needing both performance and fault tolerance.

Exam trap

The trap here is assuming that RAID 6, with its additional redundancy, is always better, but it introduces write performance penalties that may not align with the high-performance requirement.

11
MCQeasy

A project manager is selecting a data center for a new application that requires high availability and disaster recovery. Which type of data center arrangement is most appropriate?

A.Active-active
B.Single site
C.Active-passive
D.Colocation
AnswerA

Active-active runs workloads simultaneously across multiple sites, so if one data centre fails, traffic continues at the other with minimal disruption. This satisfies the stem's high availability and disaster recovery constraints, unlike active-passive arrangements that require failover downtime.

Why this answer

An active-active data center arrangement is most appropriate for high availability and disaster recovery because it distributes application traffic across multiple geographically dispersed data centers, all of which are actively serving requests. If one site fails, traffic is seamlessly redirected to the remaining active sites, ensuring near-zero downtime and no data loss. This configuration supports automatic failover and load balancing, which are critical for meeting stringent recovery time objectives (RTO) and recovery point objectives (RPO).

Exam trap

The PK0-005 exam often tests the misconception that active-passive is sufficient for high availability, but candidates overlook that active-passive introduces failover latency and potential data loss, whereas active-active provides continuous service with no manual intervention.

How to eliminate wrong answers

Option B (Single site) is wrong because it provides no redundancy; a single point of failure means any outage at that site results in complete application downtime, failing both high availability and disaster recovery requirements. Option C (Active-passive) is wrong because while it offers a standby site, the passive site does not serve traffic until a failover occurs, leading to potential downtime during the switchover and possible data loss if replication is asynchronous. Option D (Colocation) is wrong because colocation only provides physical space, power, and cooling for servers; it does not inherently include active-active or disaster recovery capabilities unless the customer separately implements redundant infrastructure across multiple colocation facilities.

12
MCQeasy

A project manager is leading a project to upgrade the storage area network (SAN) for a hospital's electronic health records (EHR) system. The current SAN is reaching capacity and has performance issues during peak hours. The new SAN must support high availability with synchronous replication between two data centers located 10 km apart. The project budget is tight, and the timeline is aggressive. During a risk assessment, the project manager identifies that the fiber optic cable between the data centers is owned by a third-party provider and has a history of outages. The project sponsor is concerned about meeting the go-live date and asks the project manager to recommend a course of action to mitigate the risk of cable outages affecting the SAN replication. Which of the following is the BEST course of action?

A.Purchase redundant SAN controllers to provide failover in case of a controller failure
B.Increase the synchronous replication interval to reduce the impact of potential outages
C.Work with the fiber provider to install a second, diverse fiber path between the data centers
D.Replace synchronous replication with asynchronous replication over the existing WAN connection
AnswerC

A second diverse fibre path provides physical route diversity, so a single third-party cable outage cannot break synchronous replication between the data centres. This directly mitigates the identified third-party outage risk while preserving the high-availability and 10 km replication constraints.

Why this answer

The risk is specifically a single point of failure in the fiber path between data centers. Installing a second, diverse fiber path eliminates this single point of failure, ensuring synchronous replication can continue even if one cable is cut. This directly addresses the sponsor's concern about go-live delays due to cable outages, without changing the replication mode or adding unnecessary hardware.

Exam trap

The trap here is that candidates may confuse high-availability components (like redundant controllers) with network path redundancy, or incorrectly assume that adjusting replication timing or mode can substitute for fixing the underlying physical connectivity risk.

How to eliminate wrong answers

Option A is wrong because redundant SAN controllers protect against controller hardware failure, not against fiber cable outages between data centers; the replication link itself remains a single point of failure. Option B is wrong because increasing the synchronous replication interval does not mitigate cable outages—it only reduces the frequency of replication attempts, but any outage still breaks replication and risks data loss or inconsistency. Option D is wrong because switching to asynchronous replication changes the recovery point objective (RPO) and may not meet the hospital's high-availability requirements for zero data loss; it also does not address the root cause of cable reliability.

13
MCQeasy

An organization is deploying a new storage area network (SAN). Which of the following is a key consideration for ensuring high performance?

A.Network latency
B.Cable color
C.Storage capacity
D.Number of users
AnswerA

SAN performance depends on the storage network's ability to move frames with minimal delay; high latency between initiators and targets throttles throughput regardless of disk speed. Network latency is therefore the key performance consideration, directly affecting IOPS and response times in the deployed fabric.

Why this answer

Network latency is a key consideration for SAN performance because SANs rely on low-latency, high-speed block-level storage protocols such as Fibre Channel (FC) or iSCSI. High latency can cause significant delays in I/O operations, directly impacting throughput and application responsiveness, especially in environments with synchronous replication or high transaction rates.

Exam trap

The trap here is that candidates often confuse storage capacity with performance, assuming more capacity means faster access, but the exam focuses on latency as the primary performance bottleneck in SAN deployments.

How to eliminate wrong answers

Option B is wrong because cable color is purely cosmetic and has no impact on performance; it is only used for physical identification or organizational purposes. Option C is wrong because storage capacity determines how much data can be stored, not how fast it can be accessed; performance is governed by factors like IOPS, throughput, and latency. Option D is wrong because the number of users does not directly affect SAN performance; while more users can increase demand, performance is determined by the SAN's architecture, bandwidth, and latency characteristics, not simply user count.

14
Multi-Selectmedium

A project manager is leading a team that is implementing a new VoIP system across multiple offices. The project manager needs to ensure that the network infrastructure can support the real-time voice traffic. Which of the following are critical network considerations for VoIP deployment? (Choose two.)

Select 2 answers
A.Low latency and jitter
B.Quality of Service (QoS)
C.Data encryption at rest
D.High bandwidth for file transfers
E.Network redundancy
AnswersA, B

Low latency and jitter are essential for VoIP because voice communication is highly sensitive to delays and variation in packet arrival times. High latency causes echo and talk-over effects, while jitter leads to choppy audio. Ensuring minimal latency and jitter through network design, such as using dedicated VLANs and prioritizing voice traffic, is critical for a successful VoIP deployment.

Why this answer

QoS and low latency/jitter are fundamental for VoIP because voice traffic is real-time and sensitive to delays and packet loss. QoS prioritizes voice packets, while low latency and jitter ensure clear audio. Other options, such as redundancy, high bandwidth for file transfers, and encryption at rest, do not directly address the real-time transport requirements of VoIP and are therefore not critical network considerations for this deployment.

Exam trap

The trap here is selecting general network best practices like redundancy or encryption at rest, which are important overall but not the specific critical factors for real-time voice traffic.

15
Multi-Selecthard

A project manager is planning the implementation of a new network monitoring system across multiple data centers. The project team must ensure that the monitoring traffic does not interfere with production workloads and that the solution can scale as new data centers are added. Which two actions should the project manager take to address these requirements? (Choose two.)

Select 2 answers
A.Use a scalable deployment architecture with centralized management.
B.Define network bandwidth and latency requirements for monitoring traffic.
C.Require each data center to use a different monitoring toolset.
D.Disable all monitoring during peak business hours.
E.Implement a flat network topology across all data centers.
AnswersA, B

A scalable deployment architecture with centralized management allows the monitoring solution to add new data centers without redesigning the entire system. Centralized management simplifies configuration, updates, and reporting across sites. This directly supports the requirement to scale as new data centers are added while maintaining consistent monitoring policies and reducing operational overhead.

Why this answer

Defining bandwidth and latency requirements ensures monitoring traffic is properly sized and prioritized to avoid impacting production. Using a scalable architecture with centralized management enables the solution to grow as new data centers are added while maintaining consistent policies. Disabling monitoring, using flat topologies, or deploying disparate toolsets would create blind spots, complexity, or performance risks rather than meeting the stated requirements.

Exam trap

The trap here is thinking that simply turning off monitoring during peak hours or using different tools per site solves interference and scalability, when these approaches actually reduce visibility or increase complexity.

16
Multi-Selecteasy

A project manager is overseeing a data center migration. The new infrastructure must support high availability and scalability. Which TWO components are essential for achieving these goals?

Select 2 answers
A.RAID 0
C.IP addressing scheme
D.Redundant power supplies
E.Single point of failure
AnswersB, D

A load balancer distributes incoming traffic across multiple servers, eliminating single points of failure and enabling horizontal scaling as demand grows. This directly satisfies the stem's high availability requirement by rerouting around failed nodes, and its scalability requirement by adding backend instances without service disruption.

Why this answer

Option B (Load balancer) is correct because a load balancer distributes incoming traffic across multiple servers, eliminating a single point of failure at the application tier and enabling horizontal scaling by allowing additional servers to be added to the pool as demand grows. Option D (Redundant power supplies) is correct because dual/redundant PSUs (often connected to separate PDUs and UPS circuits) ensure that the failure of one power feed or supply does not take down a server, which is a foundational requirement for high availability in a data center. Option A (RAID 0) is incorrect because it provides striping for performance with no redundancy, so any single disk failure destroys the array, which is the opposite of high availability.

Option C (IP addressing scheme) is incorrect because, while necessary for network communication, an addressing scheme by itself does not deliver high availability or scalability. Option E (Single point of failure) is incorrect because it is precisely what high-availability design must eliminate, not a component that achieves it.

Exam trap

The trap here is that candidates often confuse RAID 0 with RAID 1 or RAID 5, mistakenly thinking striping provides redundancy, when in fact RAID 0 sacrifices fault tolerance for performance.

17
MCQmedium

A project manager needs to ensure that the IT infrastructure project complies with industry standards for data security. Which document should the project team reference?

A.Service level agreement
B.Regulatory compliance checklist
C.Memorandum of understanding
D.Acceptable use policy
AnswerB

A regulatory compliance checklist enumerates the specific data-security standards, controls and evidence the project must satisfy, giving the team an auditable reference. It directly addresses the compliance constraint by mapping required safeguards to deliverables rather than relying on general security guidance.

Why this answer

(Regulatory compliance checklist) is correct because it provides a list of required standards and regulations that the project must comply with for data security. Option A (Service level agreement) defines service levels and performance metrics, not security compliance. Option C (Memorandum of understanding) is an agreement between organizations outlining terms and responsibilities, not a compliance document.

Option D (Acceptable use policy) governs user behavior and acceptable use of systems, not project infrastructure compliance.

18
Multi-Selecteasy

A project to upgrade network switches. Which TWO factors should the project manager consider when selecting switches? (Choose two.)

Select 2 answers
A.Switch color
B.PoE support
C.Number of ports
D.Warranty period
E.Brand name
AnswersB, C

Power over Ethernet lets the switches supply power to access points, IP cameras and VoIP handsets over the same copper cabling. Where such devices are deployed, omitting PoE support would require separate power injectors or additional electrical work.

Why this answer

Option B (PoE support) is correct because Power over Ethernet determines whether the switch can deliver electrical power alongside data over Ethernet cabling to devices such as IP phones, wireless access points, and cameras, which is a critical technical requirement when selecting switches for a network upgrade. Option C (Number of ports) is correct because port count directly dictates how many devices the switch can connect, and it must match the current and planned device density of the network to avoid running out of capacity or overspending on unused ports. The unmarked options do not belong: switch color (A) is purely cosmetic and has no bearing on network functionality, warranty period (D) is a commercial consideration rather than a core technical selection factor, and brand name (E) is a subjective preference that does not by itself determine whether the switch meets the project's requirements.

Exam trap

The PK0-005 exam often tests the distinction between technical requirements and non-technical attributes, so the trap here is that candidates may mistake warranty period or brand name as critical selection factors, when in reality they are secondary to functional specifications like PoE support and port count.

19
MCQmedium

During a network upgrade project, a technician accidentally disconnects a critical switch, causing an outage. The project manager needs to update the issue log and communicate with stakeholders. Which communication method is most appropriate for notifying senior management of the outage?

A.Status report in the next weekly meeting
B.Verbal briefing via phone call
C.Project dashboard update
D.Email notification
AnswerB

A phone call delivers immediate, direct notification to senior management, letting them question the project manager and authorise action during an active outage. Written updates are too slow for this urgency, so verbal briefing satisfies the stem's need for rapid escalation of a critical incident.

Why this answer

A network outage is a critical incident requiring immediate escalation. A verbal briefing via phone call (B) is the most appropriate method because it provides real-time, synchronous communication, allowing senior management to ask clarifying questions and make urgent decisions. This aligns with ITIL best practices for major incident management, where speed and clarity are paramount.

Exam trap

The trap here is that candidates often choose email (D) thinking it provides a written record, but the exam emphasizes that for critical outages, the speed and interactivity of a verbal briefing outweigh the documentation benefit, as the issue log can be updated afterward.

How to eliminate wrong answers

Option A is wrong because a status report in the next weekly meeting introduces an unacceptable delay; senior management must be informed immediately, not at a scheduled future time. Option C is wrong because a project dashboard update is a passive, asynchronous method that does not guarantee timely notification or allow for immediate discussion. Option D is wrong because an email notification, while faster than a weekly meeting, is still asynchronous and may not be read promptly; it lacks the urgency and interactive feedback of a direct verbal call.

20
MCQeasy

A project manager is leading an infrastructure refresh that introduces a new enterprise resource planning (ERP) system. The project sponsor asks which document formally authorizes the project and gives the project manager the authority to apply organizational resources to project activities. Which document should the project manager reference?

A.Business case
B.Project management plan
C.Project charter
D.Benefits management plan
AnswerC

The project charter formally authorizes the existence of the project and gives the project manager authority to apply organizational resources to project activities. In this ERP infrastructure refresh, the sponsor signs the charter to legitimize the effort. Without it, the project manager lacks formal power to commit budget, people, or vendor contracts, and the project would lack an approved start.

Why this answer

The project charter is the formal document that authorizes the project and empowers the project manager to apply organizational resources. In an ERP infrastructure refresh, the sponsor's signature on the charter marks the official start and provides the authority needed to commit budget, staff, and vendor agreements. Other planning artifacts, such as the project management plan or business case, support execution or justify investment but do not grant this formal authority.

Exam trap

The trap here is confusing the document that justifies the project (business case) or describes how it will be managed (project management plan) with the one that formally authorizes it and empowers the project manager.

21
MCQmedium

A project to migrate on-premises email to a cloud-based service is nearing completion. After the final cutover, some users report that emails sent to certain domains are not being delivered. The project team checks the mail servers and finds no errors. The project manager reviews the DNS records and discovers that the MX records were not updated to point to the new service. What should the team do first?

A.Configure manual email forwarding rules.
B.Set up an SMTP relay on the old server.
C.Update the DNS records and wait for propagation.
D.Revert the migration to the on-premises system.
AnswerC

Incorrect MX records mean sending mail servers cannot locate the new service, so delivery fails regardless of server health. Updating the DNS records to point at the cloud service and allowing propagation restores routing, which is the prerequisite for any further delivery testing.

Why this answer

The root cause is that the MX records in DNS still point to the old on-premises mail server, so sending mail servers cannot route messages to the new cloud service. Updating the MX records to point to the new service and waiting for DNS propagation (typically 1–48 hours depending on TTL) is the correct first step because it restores proper email routing at the DNS level. No server-side errors exist, so the issue is purely a DNS configuration problem.

Exam trap

The trap here is that candidates assume a server-side configuration error (like SMTP relay or forwarding) is needed, but the question explicitly states no server errors exist, so the correct first action is to fix the DNS records rather than applying a workaround or reverting the project.

How to eliminate wrong answers

Option A is wrong because manual email forwarding rules would only redirect mail already arriving at the old server, but since the MX records are incorrect, external senders never reach the old server either—they fail to deliver because they look up the wrong destination. Option B is wrong because setting up an SMTP relay on the old server would still require the MX records to point to that server first; it does not fix the fundamental DNS misconfiguration and would add unnecessary complexity. Option D is wrong because reverting the entire migration is an extreme, costly, and unnecessary step when the issue is a simple DNS record update—there is no indication of a functional problem with the new cloud service itself.

22
Multi-Selecteasy

A project manager is evaluating potential IT infrastructure projects. Which two project selection methods consider financial return? (Choose two.)

Select 2 answers
A.Cost-benefit analysis
B.Payback period
C.Expert judgment
D.Weighted criteria
E.Scoring model
AnswersA, B

Cost-benefit analysis quantifies expected financial return by comparing projected benefits against implementation and operating costs, producing a comparable value for each candidate project. This directly satisfies the stem's criterion of a selection method that considers financial return.

Why this answer

Cost-benefit analysis (A) is a financial project selection method because it compares the total expected costs of a project against its total expected benefits, typically expressed in monetary terms, to determine whether the investment yields a positive net return. Payback period (B) is also a financial method because it calculates how long it takes for the cumulative cash inflows from a project to recover the initial investment, directly measuring financial return timing. Expert judgment (C) is not inherently financial; it relies on the experience and knowledge of subject matter experts and can be applied to any selection criterion.

Weighted criteria (D) and scoring model (E) are multi-criteria decision techniques that may include financial factors but are not exclusively or primarily financial return methods, as they typically combine weighted qualitative and quantitative factors into a single score.

Exam trap

The trap here is that candidates may confuse 'financial return' with any evaluation method that includes a financial component, but weighted criteria and scoring models are multi-criteria decision tools that do not specifically measure financial return as their primary output.

23
MCQhard

A project manager is overseeing the implementation of a new customer relationship management (CRM) system. The vendor requires access to the company's internal network to install and configure the software. Which of the following is the BEST practice to ensure security while allowing vendor access?

A.Provide the vendor with access to the guest Wi-Fi network
B.Set up a VPN connection with two-factor authentication
C.Allow the vendor to use remote desktop protocol (RDP) directly over the internet
D.Create a local user account with administrative privileges for the vendor
AnswerB

A VPN with two-factor authentication encrypts the vendor's session and verifies identity before any internal resource is reachable, satisfying the need to permit installation access without exposing the network. Two-factor authentication specifically mitigates credential compromise, which a plain VPN tunnel alone would not address.

Why this answer

Setting up a VPN connection with two-factor authentication is the best practice because it creates an encrypted tunnel over the internet, ensuring data confidentiality and integrity, while two-factor authentication adds an extra layer of security beyond just a password. This approach allows the vendor to access only the internal network resources necessary for installation and configuration, without exposing the entire network to unauthenticated or unencrypted access.

Exam trap

The trap here is that candidates may think providing a local admin account (Option D) is sufficient for security, overlooking the need for encrypted communication and multi-factor authentication, which are critical for remote vendor access in a production environment.

How to eliminate wrong answers

Option A is wrong because the guest Wi-Fi network is typically isolated from the internal network and does not provide the necessary access to install and configure the CRM system on internal servers; it also lacks the encryption and authentication controls required for secure vendor access. Option C is wrong because allowing RDP directly over the internet exposes the company's internal systems to brute-force attacks, man-in-the-middle attacks, and other remote exploitation, as RDP is not designed to be exposed without a VPN or secure gateway. Option D is wrong because creating a local user account with administrative privileges for the vendor grants excessive permissions and bypasses centralized authentication and auditing, making it difficult to revoke access or track activities, and it does not provide encryption for the connection.

24
MCQeasy

A project manager is leading a project to deploy a new customer relationship management (CRM) system for a sales team of 50 users. The vendor offers both an on-premises and a cloud-based option. The project sponsor is concerned about the total cost of ownership and wants to avoid large upfront capital expenditures. Which cloud service model should the project manager recommend?

A.Infrastructure as a Service (IaaS)
B.On-premises deployment
C.Platform as a Service (PaaS)
D.Software as a Service (SaaS)
AnswerD

SaaS delivers a complete application managed by the vendor, eliminating upfront hardware and software licensing costs. The sales team can access the CRM via a browser, and the vendor handles maintenance, updates, and infrastructure. This aligns with the sponsor's goal to avoid capital expenditures and reduces total cost of ownership, making it the most suitable cloud service model for this scenario.

Why this answer

SaaS is the correct choice because it provides a fully managed application without upfront infrastructure costs. The vendor handles all maintenance, updates, and security, allowing the sales team to focus on using the CRM. This model minimizes capital expenditures and operational overhead, aligning with the sponsor's financial concerns and the project's goal of rapid deployment.

Exam trap

The trap here is assuming that any cloud model eliminates capital expenditures, but only SaaS removes the need for the organization to manage the application and underlying infrastructure.

25
MCQmedium

Refer to the exhibit. A project manager is reviewing the security configuration of a project's cloud storage. Which of the following is the MOST significant security risk?

A.The policy lacks encryption
B.The policy allows all actions
C.The policy allows any user
D.The policy uses an outdated version
AnswerC

A policy granting access to any user removes identity-based restriction entirely, exposing the stored data to anonymous or unintended principals. This is the most significant risk because it nullifies authentication and authorisation controls, unlike narrower misconfigurations that still limit who can reach the resource.

Why this answer

The policy statement with an unrestricted principal allows any user (authenticated or unauthenticated) to access the cloud storage. This is the most significant security risk as it effectively makes the storage publicly accessible, allowing anyone to read, write, or delete objects without restriction. Even if other settings like encryption are missing, a wide-open principal is a direct and immediate exposure.

Exam trap

Candidates often focus on missing encryption or overly permissive actions, but the most critical flaw is the unrestricted principal, which makes the storage publicly accessible regardless of other settings.

How to eliminate wrong answers

Option A is wrong because while missing encryption is a security concern, it is less critical than allowing any principal; data at rest can still be protected by server-side encryption defaults or client-side encryption, and the lack of encryption does not automatically expose the data to the public. Option B is wrong because allowing all actions (`"Action": "*"`) is dangerous only when combined with a broad principal; if the principal is restricted to a specific IAM role or user, the risk is contained. Option D is wrong because using an outdated policy version (e.g., 2008-10-17 instead of 2012-10-17) may limit available features but does not inherently introduce a security vulnerability; the policy still enforces its defined rules.

26
MCQeasy

A project manager is planning a new data center build. The organization requires high availability and low latency for critical applications. Which infrastructure component should be prioritized to meet these requirements?

A.Additional storage arrays
B.Additional firewall appliances
C.Redundant network paths
D.Virtualization licenses
AnswerC

Redundant network paths eliminate single points of failure and enable traffic to route around outages, sustaining availability while keeping latency low for critical applications. This directly satisfies both stated requirements, unlike additional compute or storage capacity, which addresses neither.

Why this answer

Redundant network paths ensure that if one link or switch fails, traffic can immediately fail over to an alternate path, providing high availability. They also reduce latency by enabling load balancing across multiple links, which is critical for real-time applications. This directly addresses the requirement for both high availability and low latency in a data center build.

Exam trap

The PK0-005 exam often tests the misconception that adding more hardware (like storage or firewalls) directly improves availability and latency, when in fact network path redundancy is the foundational component for both in a data center context.

How to eliminate wrong answers

Option A is wrong because additional storage arrays improve storage capacity and redundancy but do not directly impact network latency or path availability for critical applications. Option B is wrong because additional firewall appliances enhance security but can introduce latency and do not inherently provide redundant network paths for high availability. Option D is wrong because virtualization licenses enable server consolidation and resource pooling but do not address network-level redundancy or low-latency connectivity.

27
Multi-Selecthard

A project manager is leading the implementation of a new enterprise resource planning (ERP) system that will be hosted in a private cloud. The project sponsor wants to ensure that the infrastructure meets the following requirements: high availability, data redundancy, and the ability to recover from a site failure. Which two components should the project manager include in the project plan? (Choose two.)

Select 2 answers
A.Single server with dual power supplies
C.Offsite backup replication
D.RAID 0 array
E.Uninterruptible power supply (UPS)
AnswersB, C

A load balancer distributes incoming traffic across multiple servers, which improves availability and prevents any single server from becoming a bottleneck. In a private cloud ERP deployment, a load balancer helps maintain service if one server fails, directly supporting the high availability requirement. It does not provide data redundancy or site recovery on its own, but it is a key component for resilient application delivery.

Why this answer

The sponsor requires high availability, data redundancy, and site failure recovery. A load balancer ensures application availability by distributing traffic across multiple servers, while offsite backup replication provides data redundancy and enables recovery if the primary site is lost. RAID 0, a UPS, and a single server with dual power supplies do not adequately address all three requirements, especially site-level recovery and data redundancy.

Exam trap

The trap here is focusing on component-level redundancy, such as dual power supplies or RAID, instead of addressing the broader requirements for high availability and site recovery, which need load balancing and offsite replication.

28
MCQmedium

A project is implementing a new backup solution. The current infrastructure uses tape backups, and the new solution will use cloud storage. During planning, the team identifies that the internet bandwidth is insufficient for initial seed data transfer. What is the best approach to mitigate this risk?

A.Compress the backup data to reduce transfer size
B.Schedule the transfer during off-peak hours
C.Perform a physical seed transfer of the initial backup
D.Upgrade the internet connection to higher bandwidth
AnswerC

Shipping encrypted physical media to the cloud provider bypasses the insufficient internet bandwidth entirely, since the bulk seed copy travels offline. Only incremental changes afterwards traverse the network, making the initial transfer feasible within the project timeline.

Why this answer

When internet bandwidth is insufficient for the initial seed data transfer of a cloud backup solution, a physical seed transfer (e.g., shipping a hard drive or tape cartridge to the cloud provider) bypasses the bandwidth bottleneck entirely. This approach is commonly supported by major cloud providers (e.g., AWS Snowball, Azure Data Box) for large initial datasets, as it avoids prolonged transfer times and potential failures over limited connections.

Exam trap

The trap here is that candidates may choose compression or off-peak scheduling as quick fixes, failing to recognize that the initial seed transfer's sheer volume makes physical shipping the only practical mitigation when bandwidth is insufficient.

How to eliminate wrong answers

Option A is wrong because compression alone cannot overcome severe bandwidth limitations for large seed data; the compressed size may still exceed the available throughput, and some backup data (e.g., already compressed media) may not compress significantly. Option B is wrong because scheduling during off-peak hours does not increase the total available bandwidth; it only shifts the transfer to a less congested time, but the insufficient bandwidth cap remains, making the transfer still infeasible within a reasonable timeframe. Option D is wrong because upgrading the internet connection may be costly, time-consuming, and not immediately feasible during the project planning phase; it also does not address the root cause of the initial seed transfer size, which is often terabytes or petabytes, making even a high-bandwidth link impractical for the first transfer.

29
Matchingmedium

Match each procurement document to its purpose.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Solicit general information about vendor capabilities

Request detailed proposals for a specific project need

Request pricing for specific goods or services

Request competitive bids for clearly defined work

Formal document to authorize a purchase transaction

Why these pairings

These procurement documents are commonly used in project procurement management.

30
MCQmedium

A company is migrating from on-premise email to a cloud-based solution. The vendor changes the migration tool mid-project. Which project management document should be updated to track the impact on requirements?

A.Risk management plan
B.Project charter
C.Requirements traceability matrix
D.Work breakdown structure
AnswerC

The requirements traceability matrix links each requirement to its source, design, and test artefacts, so the vendor tool change and its requirement impacts are recorded there. Updating it maintains bidirectional traceability, letting the project manager assess which requirements are affected and confirm coverage after the migration tool substitution.

Why this answer

The requirements traceability matrix (RTM) links each requirement to its origin, design, testing, and delivery status. When the vendor changes the migration tool mid-project, the RTM must be updated to reflect how this change impacts each requirement—such as compatibility, data migration rules, or security controls—ensuring all requirements are still met and traceable.

Exam trap

The trap here is that candidates confuse the risk management plan with tracking requirement impacts, but the RTM is the specific artifact for linking and monitoring requirement changes throughout the project lifecycle.

How to eliminate wrong answers

Option A is wrong because the risk management plan documents how risks are identified, analyzed, and responded to, not the tracking of requirement changes; the tool change itself might be a risk, but the impact on specific requirements is tracked in the RTM. Option B is wrong because the project charter is a high-level document that authorizes the project and defines initial scope, objectives, and stakeholders; it is not updated to track detailed requirement impacts during execution. Option D is wrong because the work breakdown structure (WBS) decomposes project deliverables into manageable work packages; it does not map requirements to their verification or track changes to requirements.

31
MCQhard

A project manager is overseeing the deployment of a new server infrastructure that includes both physical and virtual servers. The project requires that the new servers be integrated into the existing monitoring system. Which protocol should the project manager ensure is enabled to allow the monitoring system to collect performance metrics from both physical and virtual servers?

A.Remote Desktop Protocol (RDP)
B.Secure Shell (SSH)
C.Lightweight Directory Access Protocol (LDAP)
D.Simple Network Management Protocol (SNMP)
AnswerD

SNMP is a standard protocol for monitoring network devices, servers, and applications. It allows the monitoring system to collect performance metrics such as CPU, memory, and disk usage from both physical and virtual servers. Enabling SNMP ensures integration with the existing monitoring system, assuming the system supports SNMP.

Why this answer

SNMP is the standard protocol for monitoring servers and network devices. It enables the monitoring system to collect performance metrics from both physical and virtual servers. SSH, RDP, and LDAP serve different purposes—remote access, remote desktop, and directory services—and do not provide the required monitoring data collection.

Exam trap

The trap here is confusing remote access protocols like SSH or RDP with monitoring protocols, overlooking that SNMP is specifically designed for performance metric collection.

32
MCQeasy

A project manager is assigned to upgrade the firewall for a company with multiple branch offices. The project charter has been approved, but the budget is tight. Which cost control technique should the project manager use to ensure expenses remain within budget?

A.Earned value management (EVM)
B.Reserve analysis
C.Bottom-up estimating
D.Parametric modeling
AnswerA

Earned value management compares planned value, earned value and actual cost, exposing schedule and cost variances early. With a tight budget across multiple branch offices, this gives the project manager quantitative early warning to keep expenses within the approved baseline.

Why this answer

Earned value management (EVM) is the correct technique because it integrates scope, schedule, and cost data to provide objective performance metrics (e.g., Cost Performance Index, Schedule Performance Index) that allow the project manager to continuously monitor and control expenses against the approved budget. For a firewall upgrade with multiple branch offices, EVM helps detect cost overruns early by comparing planned value (PV), earned value (EV), and actual cost (AC), enabling corrective actions before the tight budget is exceeded.

Exam trap

The trap here is that candidates confuse cost control techniques (used during monitoring and controlling) with cost estimation techniques (used during planning), leading them to select bottom-up estimating or parametric modeling instead of EVM.

How to eliminate wrong answers

Option B (Reserve analysis) is wrong because it is used to determine the amount of contingency or management reserves needed during planning, not to actively track and control ongoing expenses against the budget during execution. Option C (Bottom-up estimating) is wrong because it is a cost estimation technique performed at the work package level during project planning, not a cost control technique used after the project charter is approved to ensure expenses stay within budget. Option D (Parametric modeling) is wrong because it is a quantitative estimating method that uses statistical relationships between historical data and variables (e.g., cost per firewall unit), not a real-time monitoring and control technique for managing expenditures against the approved baseline.

33
MCQhard

A project manager is overseeing the deployment of a new file server that will store sensitive financial data. The project sponsor requires that data at rest be encrypted to comply with industry regulations. The project manager must choose an encryption method that provides strong security without significantly impacting performance. Which of the following should the project manager recommend?

A.IPsec transport mode
B.File-level permissions
C.BitLocker Drive Encryption
D.SSL/TLS certificates
AnswerC

BitLocker provides full-disk encryption for data at rest, using AES encryption with key lengths up to 256 bits. It integrates with hardware TPM for secure key storage and has minimal performance overhead on modern hardware. It meets regulatory requirements for encrypting sensitive data at rest and is suitable for file servers. BitLocker also supports network unlock and can be managed via Group Policy, making it appropriate for enterprise deployments.

Why this answer

BitLocker Drive Encryption is designed to encrypt entire volumes, protecting data at rest even if the physical disk is removed or stolen. It uses strong AES encryption and integrates with TPM for key protection, offering a balance of security and performance. Other options either encrypt data in transit or control access without encryption, failing to meet the requirement for data-at-rest encryption to comply with regulations.

Exam trap

The trap here is confusing data-in-transit encryption methods like IPsec or SSL/TLS with data-at-rest encryption, which requires full-disk or file-level encryption technologies.

34
MCQeasy

An IT project manager is building the cost baseline for a data center hardware refresh. The sponsor wants a single document that shows the total approved budget, the amount allocated to each work package over time, and the reserve for unplanned risks. Which artifact should the project manager produce?

A.Business case
B.Cost baseline
C.Bill of materials (BOM)
D.Responsibility assignment matrix (RAM)
AnswerB

The cost baseline is the time-phased, approved budget for the project, broken down by work package and used to measure cost performance. It excludes management reserve but includes contingency reserve, which is exactly the unplanned-risk amount the sponsor asked to see. It is the reference against which earned value metrics such as CPI are calculated.

Why this answer

The cost baseline is the approved, time-phased budget that shows total funding, distribution by work package, and contingency reserve for known risks, making it the correct artifact for the sponsor's request. The bill of materials, business case, and responsibility assignment matrix address components, justification, and roles respectively, and none of them presents an approved budget with reserves.

Exam trap

The trap here is assuming the business case or bill of materials serves as the budget control document, when only the cost baseline carries the approved time-phased funding and reserves.

35
MCQeasy

An IT project manager is tasked with deploying a new inventory management system. The project requires installing software on 100 workstations and training users. Which factor is most critical to include in the project schedule?

A.Time to create user manuals
B.Duration of user training sessions
C.Dependency on hardware compatibility testing
D.Procurement lead time for network cables
AnswerC

Hardware compatibility testing gates the workstation software rollout: if testing fails, installation cannot begin, so it sits on the critical path. Scheduling installation and training without this predecessor risks rework across 100 machines, making the dependency essential to sequence correctly.

Why this answer

Hardware compatibility testing is the most critical factor because the inventory management system may require specific hardware configurations (e.g., CPU architecture, RAM, storage, or network interface drivers) to function correctly. If workstations are incompatible, the entire deployment could fail, making this dependency a prerequisite that must be scheduled before or in parallel with software installation. Without verifying compatibility, the project risks costly rework or delays.

Exam trap

The trap here is that candidates often mistake user training or documentation as critical path items, but CompTIA tests the understanding that technical dependencies—especially hardware compatibility—are the most likely to cause schedule delays if not addressed early.

How to eliminate wrong answers

Option A is wrong because creating user manuals is a documentation task that can be done in parallel with other activities and does not represent a critical dependency for the deployment schedule. Option B is wrong because the duration of user training sessions, while important, is a downstream activity that depends on the system being installed and tested; it is not a critical path dependency. Option D is wrong because procurement lead time for network cables is a minor logistical detail; network cables are standard components with short lead times and do not typically affect the core deployment schedule.

36
MCQmedium

A project team is deploying new servers in a virtualized environment. The project scope includes performance monitoring. Which tool should the team configure to baseline CPU and memory usage?

A.SNMP trap receiver
C.Network analyzer
D.Hypervisor management console
AnswerD

The hypervisor management console exposes host- and VM-level performance counters, including CPU and memory consumption, directly from the virtualisation layer. This satisfies the scope's performance-monitoring requirement by providing the metrics needed to baseline resource usage across the virtualised servers, without installing guest-level agents.

Why this answer

The hypervisor management console (e.g., vCenter for VMware or Hyper-V Manager) provides built-in performance monitoring and historical data collection for virtualized servers, allowing the team to baseline CPU and memory usage directly from the virtualization layer. This is the correct tool because it captures resource utilization at the hypervisor level, which is essential for establishing performance baselines in a virtualized environment.

Exam trap

The trap here is that candidates often confuse a network analyzer (Option C) with a performance monitoring tool, but network analyzers only inspect packet-level data, not server CPU/memory metrics, which are managed at the hypervisor layer.

How to eliminate wrong answers

Option A is wrong because an SNMP trap receiver is used to receive asynchronous alerts from network devices (e.g., routers, switches) based on predefined thresholds, not to continuously collect and baseline CPU/memory usage of virtual servers. Option B is wrong because a load balancer distributes network traffic across multiple servers to ensure availability and performance, but it does not provide historical baseline data for CPU and memory utilization. Option C is wrong because a network analyzer (e.g., Wireshark) captures and inspects network packets for troubleshooting traffic issues, not for monitoring server CPU or memory usage.

37
MCQeasy

A project manager is leading a project to upgrade the organization's network infrastructure. The project sponsor asks for a document that outlines the project's purpose, high-level requirements, and key stakeholders. Which document should the project manager provide?

A.Work breakdown structure (WBS)
B.Project charter
C.Project management plan
D.Business case
AnswerB

The project charter formally authorizes the project and documents its purpose, high-level requirements, and key stakeholders. It is the appropriate document to provide to the sponsor at this stage, as it establishes the project's foundation and gives the project manager authority to proceed.

Why this answer

The project charter is the document that formally authorizes the project and includes its purpose, high-level requirements, and key stakeholders. It is created during initiation and provides the project manager with the authority to apply resources. The WBS, project management plan, and business case serve different purposes and do not fulfill the sponsor's request.

Exam trap

The trap here is confusing the business case, which justifies the project, with the project charter, which authorizes it and includes high-level requirements and stakeholders.

38
MCQhard

A project to implement a new storage solution. The team is evaluating iSCSI vs Fibre Channel. Which factor is most important for choosing iSCSI over Fibre Channel?

A.Longer distance support
B.Higher performance
C.Better security
D.Lower cost
AnswerD

iSCSI transports SCSI commands over existing Ethernet infrastructure, so it reuses standard switches, cabling and NICs rather than requiring dedicated Fibre Channel HBAs and fabric switches. That reuse is the axis of difference, satisfying the stem's cost constraint when the organisation lacks a Fibre Channel fabric.

Why this answer

iSCSI is generally chosen over Fibre Channel primarily because it leverages existing Ethernet infrastructure, which significantly reduces hardware and operational costs. Fibre Channel requires specialized switches, host bus adapters (HBAs), and cabling, whereas iSCSI can run on standard network interface cards (NICs) and switches, making it a more cost-effective solution for many organizations.

Exam trap

The trap here is that candidates often assume iSCSI is chosen for its performance or distance capabilities, but the exam emphasizes that cost reduction from using existing Ethernet infrastructure is the primary driver for selecting iSCSI over Fibre Channel.

How to eliminate wrong answers

Option A is wrong because Fibre Channel supports longer distances (up to 10 km with single-mode fiber) compared to iSCSI, which is limited by Ethernet distance constraints (typically 100 meters for copper, longer with fiber but still less than native Fibre Channel). Option B is wrong because Fibre Channel typically provides higher performance with lower latency and dedicated bandwidth, while iSCSI introduces TCP/IP overhead and shares bandwidth with other network traffic. Option C is wrong because Fibre Channel offers better security through its isolated fabric and native zoning/LUN masking, whereas iSCSI relies on IPsec or other network-level security that can be more complex to implement and may have vulnerabilities.

39
MCQmedium

A project manager is planning to migrate an on-premises data center to a hybrid cloud environment. The organization requires that the project team can provision and manage both on-premises and cloud resources through a single pane of glass. Which technology should the project manager prioritize?

A.Infrastructure as a Service (IaaS)
B.Software as a Service (SaaS)
C.Hybrid cloud management platform
D.Platform as a Service (PaaS)
AnswerC

A hybrid cloud management platform is designed to provide a unified interface for managing resources across on-premises and cloud environments. It enables centralized provisioning, monitoring, and governance, directly satisfying the requirement for a single pane of glass and simplifying operations for the project team.

Why this answer

A hybrid cloud management platform provides a single interface to manage both on-premises and cloud resources, meeting the requirement for unified provisioning and monitoring. The other cloud service models (IaaS, PaaS, SaaS) each address specific layers but do not offer cross-environment management, so they fail to satisfy the single-pane-of-glass need.

Exam trap

The trap here is assuming that any cloud service model (IaaS, PaaS, SaaS) inherently provides unified management across hybrid environments, when in fact a dedicated management platform is required.

40
MCQhard

A project team is evaluating cloud providers for a SaaS application. The provider must guarantee 99.99% uptime and support data sovereignty requirements. Which service level agreement (SLA) clause is most critical to review?

A.Data encryption standards
B.Financial penalty for downtime
C.Incident response and escalation procedure
D.Data residency and location clauses
AnswerD

Data residency and location clauses define where the provider stores and processes data, directly satisfying the sovereignty requirement. Uptime guarantees address availability, not jurisdiction, so residency clauses are the critical term to verify for regulatory compliance.

Why this answer

The question explicitly requires the provider to support data sovereignty, which mandates that data must be stored and processed within specific geographic boundaries. The SLA clause on data residency and location clauses (Option D) directly addresses this by defining where data centers are located and whether data can be moved across borders. Without this clause, the provider could store data in jurisdictions violating legal or regulatory requirements, making it the most critical clause to review.

Exam trap

The PK0-005 exam often tests the distinction between security controls (encryption) and legal/regulatory compliance (data residency), leading candidates to mistakenly choose encryption standards when the core requirement is geographic data control.

How to eliminate wrong answers

Option A is wrong because data encryption standards, while important for security, do not address the geographic location of data storage or processing required for data sovereignty. Option B is wrong because financial penalties for downtime relate to uptime guarantees (99.99%), not data sovereignty; they compensate for service outages but do not enforce where data resides. Option C is wrong because incident response and escalation procedures focus on how issues are handled after they occur, not on the proactive requirement to keep data within specific jurisdictions.

41
Drag & Dropmedium

Order the steps for creating a project schedule.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4

Why this order

Schedule development follows: define activities, sequence, estimate resources, estimate durations, then develop the schedule.

42
Multi-Selecthard

A company is deploying a new web server. Which TWO security measures should the project manager include in the project plan? (Choose two.)

Select 2 answers
A.UPS
C.RAID array
D.Firewall rules
E.TLS certificate
AnswersD, E

Firewall rules restrict inbound and outbound traffic to only the required ports and sources, blocking unauthorised access to the new web server. Including them in the project plan satisfies the security measure requirement for the deployment.

Why this answer

Option D (Firewall rules) is correct because a web server exposed to a network must have firewall rules that restrict inbound traffic to only the required ports (e.g., TCP 80/443) and block unauthorized access, which is a fundamental security control for protecting the server. Option E (TLS certificate) is correct because it enables HTTPS encryption, ensuring data in transit between clients and the web server is protected via TLS, which is essential for securing web communications and preventing eavesdropping or tampering. Option A (UPS) is incorrect because an uninterruptible power supply addresses availability and power continuity, not security.

Option B (Load balancer) is incorrect because it primarily provides availability, scalability, and traffic distribution rather than being a security measure. Option C (RAID array) is incorrect because RAID provides disk redundancy and fault tolerance for data availability, not protection against security threats.

Exam trap

The trap here is that candidates often confuse high-availability or infrastructure components (UPS, load balancer, RAID) with security measures, but the question specifically asks for security measures, not availability or performance features.

43
MCQeasy

You are the project manager for a mid-sized company that provides an online customer portal. The portal is hosted on a single virtual machine (VM) in the company's on-premises data center with 4 vCPUs, 16 GB RAM, and a 500 GB HDD. The VM runs Windows Server 2019 and hosts both the web server (IIS) and the database (SQL Server Express). Users have been reporting slow performance, especially during peak hours (10 AM - 2 PM). The system administrator notes that CPU usage spikes to 95% during those times, and disk I/O latency averages 50 ms. The company's budget is limited, and they want a cost-effective solution that can be implemented within two weeks. The project sponsor suggests migrating to the cloud, but the IT director is concerned about security and compliance. The company has no existing cloud infrastructure or virtual private network (VPN) to the cloud. You need to propose a solution that improves performance without incurring high costs or long delays. Which of the following is the BEST course of action?

A.Migrate the entire portal to a public cloud provider using a lift-and-shift approach, and set up a VPN connection for security.
B.Upgrade the existing VM by adding more RAM and using a faster HDD with a larger cache.
C.Create two separate VMs: one for the web server with 2 vCPUs and 8 GB RAM, and one for the database with 2 vCPUs and 8 GB RAM. Replace the HDD with an SSD on both VMs.
D.Implement IIS compression and enable SQL Server data compression to reduce CPU and I/O load.
AnswerC

Separating IIS and SQL Server Express onto dedicated VMs removes their CPU and memory contention, and SSDs cut the 50 ms disk latency. This stays on-premises, avoiding cloud security and VPN concerns, and fits the two-week, low-cost constraint.

Why this answer

Separating the web server and database onto two VMs eliminates resource contention between IIS and SQL Server Express, which is the root cause of the CPU and I/O spikes. Replacing the HDD with SSDs reduces disk I/O latency from 50 ms to under 1 ms, directly addressing the performance bottleneck. This solution is cost-effective and can be implemented within two weeks using existing on-premises hardware, without requiring cloud migration or VPN setup.

Exam trap

The trap here is that candidates may choose Option D (compression) thinking it reduces load, but they overlook that compression adds CPU overhead and does not fix the core issue of resource contention between IIS and SQL Server on a single VM.

How to eliminate wrong answers

Option A is wrong because a lift-and-shift migration to the cloud requires setting up a VPN, which typically takes longer than two weeks and incurs significant costs for data transfer and ongoing egress fees, plus the company has no existing cloud infrastructure or VPN. Option B is wrong because adding RAM does not address the 95% CPU usage caused by resource contention between IIS and SQL Server on the same VM, and a faster HDD still has mechanical latency (typically 5-15 ms) that cannot match SSD performance for reducing I/O latency from 50 ms. Option D is wrong because IIS compression and SQL Server data compression reduce data size but do not resolve the fundamental CPU and I/O contention from running both services on a single VM; compression can even increase CPU usage, worsening the existing CPU bottleneck.

44
Multi-Selectmedium

A project to implement a new backup solution. Which THREE components are essential for a comprehensive backup strategy? (Choose three.)

Select 3 answers
A.Retention policy
B.Compression
C.Replication
D.Backup scheduling
E.Off-site storage
AnswersA, D, E

A retention policy defines how long each backup generation is kept and when it expires, governing recovery point objectives and compliance obligations. Without it, backups accumulate indefinitely or are deleted prematurely, undermining the strategy's restorability.

Why this answer

A retention policy (A) is essential because it defines how long each backup generation is kept and when it can be expired or overwritten, which directly governs recoverability to specific points in time and compliance with data-retention requirements. Backup scheduling (D) is essential because it determines the frequency and timing of full, incremental, or differential jobs, ensuring the RPO (recovery point objective) is actually met. Off-site storage (E) is essential because it provides geographic separation from the primary site, protecting backups against site-wide disasters such as fire, flood, or ransomware that could destroy locally stored copies.

Compression (B) is only an optimization that reduces storage and bandwidth consumption, and replication (C) is a redundancy/availability technique; neither is required for a backup strategy to be comprehensive, since backups can function without them.

Exam trap

The PK0-005 exam often tests the distinction between 'essential components' (like retention policy, scheduling, and off-site storage) and 'optional enhancements' (like compression and replication), leading candidates to mistakenly include replication as a core requirement when it is actually a separate disaster recovery technique.

45
MCQmedium

A project manager is leading a project to migrate an on-premises data center to a colocation facility. The project manager must ensure that the new facility provides adequate physical security for the servers. Which of the following should the project manager verify during the site visit?

A.The facility has biometric access controls and surveillance cameras.
B.The facility offers redundant power and cooling systems.
C.The facility has a Service Level Agreement (SLA) guaranteeing 99.99% uptime.
D.The facility provides 24/7 onsite technical support.
AnswerA

Biometric access controls and surveillance cameras are key physical security measures that restrict and monitor access to the data center. They help prevent unauthorized entry and provide audit trails. Verifying these controls ensures that the colocation facility meets the security requirements for protecting sensitive equipment and data. This is a critical aspect of due diligence when selecting a colocation provider.

Why this answer

Biometric access controls and surveillance cameras are direct physical security measures that protect against unauthorized access and provide monitoring. When migrating to a colocation facility, verifying these controls is essential to ensure the servers are physically secure. Other options relate to operational resilience or support but do not address the requirement for physical security of the equipment.

Exam trap

The trap here is confusing operational features like redundant power or uptime SLAs with physical security controls, which are specifically about preventing unauthorized physical access.

46
MCQeasy

A project manager is leading a project to upgrade an organization's wireless network. The project charter has been approved, and the project manager is now identifying the people, equipment, and materials needed to complete the work. Which project management process is the project manager performing?

A.Develop Project Charter
B.Estimate Activity Resources
C.Acquire Project Team
D.Develop Project Management Plan
AnswerB

Estimate Activity Resources is the process of estimating the type and quantities of material, human resources, equipment, or supplies required to perform each activity. The project manager is identifying people, equipment, and materials, which directly aligns with this process. It is part of the Planning Process Group and helps determine resource requirements for the project schedule and budget.

Why this answer

The project manager is performing Estimate Activity Resources because the task involves identifying the types and quantities of people, equipment, and materials needed for project activities. This process is part of the Planning Process Group and provides input to developing the project schedule and budget. Other options are either completed earlier or focus on different aspects of project management.

Exam trap

The trap here is confusing resource estimation with team acquisition, but the scenario clearly includes equipment and materials, not just human resources.

47
MCQhard

A company is migrating to a new ERP system. The project manager needs to ensure minimal downtime during cutover. Which deployment strategy should be recommended?

A.Big bang
B.Pilot
C.Parallel
D.Phased
AnswerC

Parallel deployment runs the legacy and new ERP systems simultaneously, so transactions continue on the old system while the new one is validated. This satisfies the minimal-downtime constraint because cutover occurs only after verification, avoiding a disruptive big-bang switchover.

Why this answer

The parallel deployment strategy is recommended because it allows the old and new ERP systems to run concurrently during cutover, enabling users to validate the new system while maintaining operations on the legacy system. This minimizes downtime by providing a fallback option if issues arise, ensuring business continuity during the migration.

Exam trap

The trap here is that candidates often confuse 'phased' with 'parallel,' assuming that rolling out in stages inherently minimizes downtime, but parallel deployment uniquely allows both systems to run simultaneously to eliminate cutover downtime entirely.

How to eliminate wrong answers

Option A is wrong because the big bang strategy involves an immediate, complete switch to the new ERP system, which carries a high risk of extended downtime if critical failures occur during cutover. Option B is wrong because a pilot deployment tests the new system with a limited user group, but it does not address minimal downtime for the entire organization during full cutover. Option D is wrong because phased deployment rolls out the ERP system in stages, which can reduce risk but may still cause intermittent downtime for each phase and does not guarantee minimal overall downtime compared to parallel operation.

48
MCQmedium

A project manager is planning the deployment of a new virtual desktop infrastructure (VDI) environment. The sponsor wants to understand which type of organizational structure would give the project manager the highest level of authority over team members and budget. Which organizational structure should the project manager recommend?

A.Functional organization
B.Projectized organization
C.Weak matrix organization
D.Balanced matrix organization
AnswerB

In a projectized organization, the project manager has the highest level of authority, often controlling the team, budget, and priorities. For the VDI deployment, team members report directly to the project manager, enabling faster decisions and clearer accountability. This structure best meets the sponsor's request for maximum project manager authority over resources and budget.

Why this answer

A projectized organization grants the project manager the greatest authority over team members and budget. In this VDI deployment, team members would report directly to the project manager, who controls resource allocation and funding decisions. Functional and matrix structures distribute authority to functional managers or share it, so they do not provide the highest level of project manager control.

The sponsor's requirement for maximum authority points to a projectized structure.

Exam trap

The trap here is assuming that a matrix structure, especially a balanced matrix, gives the project manager full authority, when in fact authority is shared with functional managers.

49
MCQmedium

A project manager is leading an initiative to virtualize 40 aging physical servers onto a new hypervisor cluster. The project sponsor asks how the team will ensure that a single physical host failure does not take down the virtual machines running on it. Which hypervisor feature should the project manager confirm is configured?

A.Distributed resource scheduler (DRS)
B.High availability (HA)
C.Thin provisioning
D.Virtual switch VLAN tagging
AnswerB

HA continuously monitors host health and restarts affected VMs on surviving cluster nodes when a host fails, directly meeting the sponsor's requirement. It relies on shared storage and cluster quorum so the VM's disk state remains reachable from the new host, which is why the project must also validate the storage layer and heartbeat network before declaring the requirement satisfied.

Why this answer

The requirement is that a host failure must not take down its VMs, which is precisely what hypervisor high availability provides by restarting affected VMs on remaining cluster members. DRS, thin provisioning, and VLAN tagging improve balance, storage efficiency, or network segmentation respectively, but none of them recovers workloads after a physical host is lost, so they leave the single point of failure in place.

Exam trap

The trap here is confusing DRS, which rebalances running workloads for performance, with HA, which actually restarts VMs after a host failure.

50
MCQhard

During a project to deploy a new enterprise resource planning (ERP) system, the project manager identifies that the vendor's implementation methodology does not align with the organization's change management process. The project manager needs to address this misalignment. What should the project manager do FIRST?

A.Modify the organization's change management process to align with the vendor's methodology.
B.Request the vendor to change its methodology to match the organization's process.
C.Document the misalignment in the issue log and assess its impact on the project.
D.Escalate the issue to the project sponsor.
AnswerC

The project manager should first document the issue and analyze its potential impact on scope, schedule, and stakeholder satisfaction. This systematic approach allows for informed decision-making and helps determine the appropriate response, such as negotiating with the vendor or adjusting the change management process.

Why this answer

The project manager should first document the misalignment and assess its impact, as this is a standard issue management practice. This step provides the necessary information to evaluate options and engage stakeholders effectively. Escalating, demanding vendor changes, or altering organizational processes are premature without understanding the consequences.

Exam trap

The trap here is jumping to a solution or escalation before fully understanding the issue's impact, which can lead to unnecessary conflict or ineffective fixes.

51
Multi-Selectmedium

A project manager is leading a project to virtualize a company's physical servers. The project team is evaluating hypervisors and needs to ensure that the chosen solution supports live migration of virtual machines and high availability. Which two features should the project manager verify are supported by the hypervisor? (Choose two.)

Select 2 answers
A.Live migration
B.Virtual switch tagging
C.Distributed resource scheduling
D.High availability clustering
E.Thin provisioning
AnswersA, D

Live migration allows a running virtual machine to be moved from one physical host to another with minimal downtime. This is essential for high availability and maintenance without disrupting services. The project manager should verify that the hypervisor supports this feature, as it directly addresses the requirement to maintain uptime during hardware failures or planned maintenance.

Why this answer

Live migration and high availability clustering are the two features that directly enable moving running VMs and ensuring automatic failover. Live migration allows maintenance without downtime, while HA clustering restarts VMs on other hosts during failures. Together, they provide the required uptime and flexibility for a virtualized environment.

Exam trap

The trap here is selecting features like distributed resource scheduling or thin provisioning that improve efficiency but do not provide the core capabilities of live migration and high availability.

52
MCQmedium

A project manager is overseeing the deployment of a new VoIP system across a corporate campus. The project sponsor asks the project manager to provide a document that outlines the technical specifications, including supported protocols, codecs, and bandwidth requirements, to ensure compatibility with the existing network. Which document should the project manager provide?

A.Bill of materials (BOM)
B.Statement of work (SOW)
C.Service level agreement (SLA)
D.Technical requirements document
AnswerD

A technical requirements document details the technical specifications, including supported protocols, codecs, bandwidth requirements, and compatibility with existing infrastructure. It is the appropriate document to ensure the VoIP system integrates with the corporate network. This directly answers the sponsor's request for specifications to verify compatibility.

Why this answer

The project manager should provide a technical requirements document because it contains the detailed specifications such as protocols, codecs, and bandwidth needed to assess compatibility with the existing network. Other documents like SLA, BOM, or SOW do not provide this level of technical detail. This document ensures that the VoIP deployment meets the network's technical constraints.

Exam trap

The trap here is confusing a bill of materials with a technical requirements document, but a BOM lists parts, not technical specifications like protocols and bandwidth.

53
Drag & Dropmedium

Put the steps for creating a work breakdown structure (WBS) in the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4

Why this order

The WBS process starts with identifying major deliverables, decomposing them, assigning codes, verifying completeness, and documenting details.

54
MCQhard

A project is deploying a new virtualized server environment. The project manager receives a report that resource pooling is inefficient. Which technology can best improve resource utilization across the virtual hosts?

A.VLANs
C.RAID
D.Hypervisor memory overcommitment
AnswerD

Memory overcommitment lets the hypervisor assign more RAM to virtual machines than physically present, reclaiming idle pages through ballooning and swapping. This directly raises consolidation ratios and utilisation across hosts, addressing the inefficient resource pooling reported without adding hardware.

Why this answer

Hypervisor memory overcommitment allows a hypervisor to allocate more virtual machine (VM) memory to VMs than the physical RAM available on the host, relying on the fact that VMs rarely use their full allocated memory simultaneously. This directly improves resource utilization by enabling higher VM density per physical host, which is the core inefficiency in resource pooling. Technologies like VMware ESXi's transparent page sharing or KSM (Kernel Same-page Merging) further optimize this by deduplicating identical memory pages.

Exam trap

The trap here is that candidates confuse load balancing (which distributes network traffic) with resource pooling optimization, failing to recognize that memory overcommitment is the specific hypervisor feature that directly improves utilization of pooled compute resources.

How to eliminate wrong answers

Option A is wrong because VLANs (Virtual Local Area Networks) segment network traffic at Layer 2 and do not affect CPU, memory, or storage utilization across virtual hosts. Option B is wrong because load balancing distributes incoming network traffic across multiple servers to improve availability and response time, but it does not address inefficient memory or CPU resource pooling within a virtualized environment. Option C is wrong because RAID (Redundant Array of Independent Disks) improves storage performance or redundancy at the disk level and has no impact on virtual host resource utilization or memory overcommitment.

55
Multi-Selectmedium

Which TWO of the following are key components of IT infrastructure that a project manager should consider when planning a new software deployment? (Choose two.)

Select 2 answers
A.Project charter
B.Storage area network (SAN)
C.Status reports
D.Help desk ticketing system
E.Server hardware
AnswersB, E

A SAN provides block-level consolidated storage over a dedicated network, decoupling capacity and performance from individual servers. For a software deployment, it satisfies the infrastructure constraint of scalable, resilient shared storage that the new application's data tier requires, rather than relying on directly attached disks.

Why this answer

Server hardware (E) is a core IT infrastructure component because the physical compute resources—CPU, memory, and local disks—directly determine the capacity, performance, and compatibility of the new software deployment, so the project manager must factor in procurement, rack space, power, and cooling. A storage area network (B) is also key infrastructure since it provides block-level, high-availability shared storage over Fibre Channel or iSCSI that production databases and clustered applications typically require, affecting performance, redundancy, and backup design. By contrast, the project charter (A) is a project governance document, not infrastructure; status reports (C) are communication artifacts; and a help desk ticketing system (D) is a service-management application, not an infrastructure component the deployment itself depends on.

Exam trap

The trap here is that candidates confuse project management artifacts (like the project charter or status reports) with actual IT infrastructure components, leading them to select options that are process-related rather than technology-related.

56
MCQeasy

A project manager is leading the deployment of a new VoIP system across three office locations. The project sponsor wants to understand what type of network topology would provide redundancy if a single link between two switches fails. Which topology should the project manager recommend?

A.Bus topology
B.Ring topology
C.Star topology
D.Mesh topology
AnswerD

A mesh topology interconnects switches with multiple redundant paths. If one link between switches fails, traffic can be rerouted through alternate paths, maintaining VoIP call continuity. This directly satisfies the sponsor's requirement for redundancy and is the most appropriate recommendation for a resilient multi-site voice deployment.

Why this answer

The sponsor requires redundancy if a single link between switches fails. A mesh topology provides multiple interconnected paths, so traffic can be rerouted when one link goes down. Star, bus, and ring topologies either rely on a single central point, a shared backbone, or a single loop, none of which offer the same level of fault tolerance for a multi-site VoIP rollout.

Exam trap

The trap here is assuming that any network topology with a loop automatically provides redundancy, when in fact only a full or partial mesh offers multiple independent paths between switches.

57
Multi-Selectmedium

A project manager is leading a project to implement a new Voice over IP (VoIP) system across multiple offices. The project manager needs to ensure the network infrastructure can support the VoIP traffic. Which TWO factors should the project manager verify? (Choose two.)

Select 2 answers
A.Bandwidth capacity
B.Quality of Service (QoS) configuration
C.Network switch port security
D.Dynamic Host Configuration Protocol (DHCP) scope
E.Simple Network Management Protocol (SNMP) community strings
AnswersA, B

Sufficient bandwidth is essential to handle the simultaneous voice streams. Each VoIP call consumes a certain amount of bandwidth (e.g., 64 Kbps or more with overhead). The project manager must verify that the network has enough capacity to support all concurrent calls without affecting other applications or causing call quality issues.

Why this answer

QoS configuration and bandwidth capacity are critical to support VoIP traffic. QoS ensures voice packets are prioritized to minimize latency and jitter, while sufficient bandwidth prevents congestion that could degrade call quality. DHCP scope, SNMP community strings, and port security are important for other aspects but do not directly ensure the network can handle real-time voice traffic.

Exam trap

The trap here is selecting network management or security features like SNMP or port security, which are important but do not directly address the performance requirements of VoIP traffic.

58
MCQhard

A project to migrate on-premises email to Office 365 is behind schedule. The project sponsor asks the project manager to add more resources to accelerate the timeline. The project manager should first:

A.Add two additional migration specialists immediately
B.Update the project schedule to reflect the new timeline
C.Analyze the critical path and determine if resource addition will help
D.Reduce the project scope by deferring non-critical features
AnswerC

Adding resources only shortens the schedule if the affected tasks lie on the critical path; compressing non-critical work merely increases float. The project manager must first identify critical activities and assess whether crashing them is feasible before requesting or reallocating staff.

Why this answer

Adding resources to a project that is behind schedule can sometimes worsen the delay due to Brooks' Law, especially if the critical path involves tasks that are not parallelizable. The project manager must first analyze the critical path to determine if adding resources will actually reduce the duration of critical tasks, such as mailbox migration batches or DNS cutover steps, or if it will introduce coordination overhead that negates any gains.

Exam trap

The trap here is that candidates assume adding resources always speeds up a project (the 'resource myth'), but the CompTIA Project+ exam tests the understanding that the critical path must be analyzed first to avoid violating Brooks' Law or hitting infrastructure constraints.

How to eliminate wrong answers

Option A is wrong because immediately adding migration specialists without analyzing the critical path may lead to increased communication overhead and training delays, and if the critical path tasks are sequential (e.g., staged mailbox migrations requiring prior AD sync completion), extra resources cannot accelerate them. Option B is wrong because updating the schedule to reflect a new timeline is a result of a decision, not the first step; the project manager must first evaluate whether resource addition is feasible and effective before changing the schedule. Option D is wrong because reducing scope by deferring non-critical features is a valid response to schedule pressure, but it should be considered only after determining that adding resources will not help; the question asks for the first step, which is to analyze the critical path.

59
MCQmedium

During a server migration project, the team discovers that the new servers have a different CPU architecture than the old ones. The project manager must decide the best course of action. What should the project manager do first?

A.Proceed with migration as planned, assuming compatibility
B.Assess the impact on existing applications and plan remediation
C.Revert to the original server architecture
D.Delay the project to retrain staff on the new architecture
AnswerB

Differing CPU architecture can break binaries, dependencies and performance assumptions across the migrated workloads. Assessing which applications are affected and how, then planning remediation, must precede any migration decision, because the impact scope determines whether to recompile, replace or re-platform each system.

Why this answer

The project manager must first assess the impact of the CPU architecture change on existing applications because different instruction sets (e.g., x86 vs. ARM) can cause binary incompatibility, requiring recompilation or emulation. Proceeding without this analysis risks application failures, data corruption, or performance degradation.

This aligns with the PMBOK risk management process of identifying and analyzing risks before planning a response.

Exam trap

The trap here is that candidates may assume compatibility based on the same operating system or vendor, overlooking the critical dependency on CPU instruction set architecture (ISA) which directly impacts binary executables and system calls.

How to eliminate wrong answers

Option A is wrong because assuming compatibility without testing ignores fundamental CPU instruction set differences (e.g., x86-64 vs. ARM64), which can cause applications to crash or produce incorrect results due to incompatible machine code. Option C is wrong because reverting to the original server architecture may not be feasible or cost-effective, and it avoids addressing the root cause of the migration requirement, such as end-of-life hardware or performance needs.

Option D is wrong because delaying the project for staff retraining is premature; the immediate priority is to understand the technical impact on applications, not to train staff on the new architecture, which may not even be necessary if applications are containerized or run in a compatible runtime environment.

60
MCQhard

A project involves integrating an on-premises IT infrastructure with a public cloud provider. The project team must ensure secure connectivity. Which of the following should be implemented?

AnswerB

A site-to-site VPN builds an encrypted IPsec tunnel over the public internet between the on-premises gateway and the cloud provider, satisfying the secure connectivity requirement without dedicated circuits. It encrypts traffic in transit, so data crossing untrusted networks stays confidential and integrity-protected.

Why this answer

A VPN (Virtual Private Network) is the correct choice because it creates an encrypted tunnel over the public internet between the on-premises infrastructure and the public cloud provider, ensuring secure connectivity. Technologies like IPsec or TLS-based VPNs authenticate both endpoints and encrypt all traffic, preventing eavesdropping and tampering during transit.

Exam trap

The trap here is that candidates often confuse VPN with VLAN, thinking both provide secure segmentation, but VLANs only isolate traffic within a local network and offer no encryption or protection across the internet.

How to eliminate wrong answers

Option A is wrong because DNS (Domain Name System) translates domain names to IP addresses and does not provide encryption or secure connectivity; it is a naming service, not a security mechanism. Option C is wrong because NAT (Network Address Translation) modifies IP addresses in packet headers to allow private IPs to access the internet, but it offers no encryption or authentication for securing traffic between sites. Option D is wrong because a VLAN (Virtual Local Area Network) segments a Layer 2 network into isolated broadcast domains; it operates within a single LAN and does not secure traffic across the public internet or between different geographic locations.

61
MCQhard

A project manager is working on a project to upgrade the company's email system from an on-premises Exchange server to Microsoft 365. The project has completed the planning phase and is now in execution. During a weekly status meeting, the lead engineer reports that the initial migration batch of 100 users experienced significant delays due to unexpected compatibility issues with custom email add-ins used by the finance department. Additionally, the migration tool failed to synchronize some mailbox items, causing data loss for three users. The project timeline is tight, and the sponsor is concerned about meeting the go-live date in four weeks. There are still 900 users to migrate. The project manager needs to take action. Which of the following is the BEST course of action?

A.Instruct the team to proceed with the migration of the remaining users using the same tool to avoid further delays.
B.Immediately escalate the issue to the sponsor and recommend rolling back the migration to the on-premises server to eliminate the risk.
C.Convene a meeting with the finance department to understand the criticality of the add-ins, and update the risk register with the new findings, then adjust the project schedule accordingly.
D.Request additional budget to purchase a third-party migration tool that supports the add-ins and has better synchronization capabilities.
AnswerC

Convening the finance department clarifies add-in criticality, and updating the risk register captures the compatibility and data-loss findings as formal risks. Adjusting the schedule then reflects the remaining 900 users realistically, satisfying the sponsor's go-live constraint through informed replanning rather than optimistic assumptions.

Why this answer

The best course of action because it directly addresses the root cause—the custom email add-ins—by engaging the finance department to assess criticality, then formally updating the risk register and adjusting the schedule. This aligns with the PMBOK risk management process and allows the project to proceed with informed decisions rather than ignoring the issue or overreacting. The technical context is that custom Outlook add-ins often rely on on-premises Exchange Web Services (EWS) or MAPI over HTTP, which may not be fully compatible with Microsoft 365's REST-based APIs, causing migration failures.

Exam trap

The trap here is that candidates may choose Option D (buy a new tool) because it sounds proactive, but the PMBOK framework requires first analyzing the risk and engaging stakeholders before committing additional budget, making Option C the correct process-driven answer.

How to eliminate wrong answers

Option A is wrong because instructing the team to proceed with the same tool ignores the root cause—the tool's inability to handle custom add-ins and its synchronization failures—which will likely cause further delays and data loss for the remaining 900 users. Option B is wrong because immediately recommending a rollback is an overreaction that abandons the project's goal without first analyzing the add-in criticality or exploring mitigation options, and it fails to follow proper risk response planning. Option D is wrong because requesting additional budget for a third-party tool is premature without first understanding the add-in requirements and assessing whether the current tool can be configured or the add-ins can be modified; it also bypasses the risk management process.

62
MCQeasy

A company is implementing a new backup solution for its mixed environment of legacy and modern servers. The backup server is connected to the same network segment as production traffic. During initial testing, some backups fail intermittently, especially during peak hours. The backup logs show timeouts. The project manager is asked to identify the most likely cause and recommend a solution. Which of the following is the best course of action?

A.Upgrade the backup software to the latest version.
B.Isolate backup traffic on a separate VLAN to reduce network congestion.
C.Increase the backup window to allow more time.
D.Replace legacy servers with modern hardware.
AnswerB

Backup traffic shares the production segment, so peak-hour contention causes the logged timeouts. Placing backup traffic on a dedicated VLAN separates that bandwidth from production, satisfying the need to eliminate congestion-induced failures without altering backup schedules or hardware.

Why this answer

The backup server is on the same network segment as production traffic, causing congestion during peak hours. Backup timeouts indicate that the backup traffic is competing with production traffic for bandwidth, leading to packet loss or delays. Isolating backup traffic on a separate VLAN reduces network congestion by logically separating the traffic, ensuring dedicated bandwidth for backups and preventing interference with production operations.

Exam trap

The trap here is that candidates may assume timeouts are caused by software or hardware failures, rather than recognizing the classic network congestion symptom where backup traffic competes with production traffic on the same subnet.

How to eliminate wrong answers

Option A is wrong because upgrading the backup software does not address the root cause of network congestion; timeouts are due to bandwidth contention, not software bugs. Option C is wrong because increasing the backup window does not resolve the underlying network congestion; it merely shifts the backup to a different time, but peak-hour traffic will still cause timeouts if the backup runs during that period. Option D is wrong because replacing legacy servers does not solve the network-level issue of congestion; the timeouts are caused by network traffic, not server hardware limitations.

Ready to test yourself?

Try a timed practice session using only It Project Management questions.