ITIL4F ITIL Management Practices Practice Question
Which type of change requires assessment and authorization by a change authority, but does not follow a pre-approved procedure?
⚠ Common exam trap
Watch out — candidates often confuse 'normal change' with 'standard change' — candidates often assume that any change requiring authorization must follow a pre-approved procedure, but standard changes are the only type that are pre-authorized and follow a documented procedure, while normal changes require individual assessment.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Normal change
A normal change is any change that is not a standard change or an emergency change. It requires assessment and authorization by a change authority (e.g., the Change Manager or Change Advisory Board) but does not follow a pre-approved, low-risk procedure. This distinguishes it from standard changes, which are pre-authorized and follow a documented procedure.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Emergency change
Why it's wrong here
Emergency changes address critical incidents or potential security breaches, requiring immediate action to restore service or mitigate risk. While they do involve assessment, the authorization process is significantly expedited, often by an Emergency Change Advisory Board (ECAB), or even granted retrospectively, which deviates from the typical, full assessment and authorization cycle implied by the question. Therefore, they don't fit the description of a change requiring standard assessment and authorization.
- ✓
Normal change
Why this is correct
Normal changes are those that are not standard (pre-authorized) or emergency (expedited). They require a full assessment of risk and impact, followed by formal authorization, typically by a Change Authority or Change Advisory Board (CAB), before implementation. This structured process ensures proper planning, resource allocation, and stakeholder communication, making them the type of change that precisely fits the description of requiring both assessment and authorization.
- ✗
Service request
Why it's wrong here
A service request is a formal request from a user for something that is a normal part of service delivery, such as providing information, access to a service, or a standard IT asset. Unlike changes, service requests are pre-defined, often automated, and do not typically require a separate assessment of risk or formal authorization beyond initial validation, as they are already approved as part of the service catalog. They are operational activities, not modifications to services or infrastructure.
- ✗
Standard change
Why it's wrong here
Standard changes are low-risk, frequently occurring changes that are pre-authorized and follow a documented procedure. While they undergo an initial assessment and authorization for their *type* of change, individual instances do not require separate assessment or authorization before implementation. Their pre-approved nature means they do not fit the description of a change that requires *each instance* to undergo assessment and authorization.
Go deeper
Related to this question
About these practice questions
One of 531 original ITIL4F practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This ITIL4F practice question is part of Courseiva's free PeopleCert certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the ITIL4F exam.