Risk-Based Testing Strategies Flashcards
7 cards from real ISTQB practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Risk-Based Testing Strategies flashcards as text
According to ISTQB, which of the following BEST describes the relationship between risk level and test depth?
Answer: Higher risk warrants deeper, more thorough testing to reduce residual risk
ISTQB risk-based testing principles state that higher-risk items should receive more intensive testing — more test cases, more rigorous techniques, and earlier execution.
A tester is applying risk-based testing and runs out of time before completing all planned tests. Which outcome is MOST likely compared to a non-risk-based approach?
Answer: The most important areas have been tested first, so the untested areas pose lower risk
By executing the highest-risk tests first, a risk-based approach ensures that if time is cut short, the remaining untested areas are lower risk and the most critical potential failures have been addressed.
Which of the following is a valid input to the risk assessment process?
Answer: Defect density metrics from previous similar projects
Historical defect data from similar projects is a valuable input to risk assessment, as it informs the likelihood that similar components or patterns will produce defects again.
In ISTQB's risk-based approach, what is the role of 'risk monitoring' during test execution?
Answer: To track whether risk levels change as testing progresses and defects are found or mitigated
Risk monitoring during test execution involves tracking changes in risk levels as defects are found and fixed, or as new risks emerge, so that priorities can be adjusted accordingly.
Which ISTQB testing level is MOST commonly associated with product risk assessment targeting business-critical functionality?
Answer: Acceptance testing
Acceptance testing, particularly user acceptance testing (UAT), is most closely associated with business-level product risk assessment since it validates the system against business needs and user expectations.
A risk-based testing strategy recommends allocating 60% of testing effort to 20% of the system's features. This is MOST consistent with which principle?
Answer: Pareto principle applied to defect distribution and risk concentration
The Pareto principle (80/20 rule) suggests that a small proportion of features typically carries the majority of risk and defects, justifying concentrated effort on that subset.
Which of the following is NOT a typical output of a risk analysis performed during test planning?
Answer: Detailed design specifications for the software architecture
Detailed design specifications are a development artifact, not an output of test risk analysis; risk analysis produces risk-ranked feature lists, updated risk registers, and test effort distributions.