ISTQB Mock App

Risk Identification

Risk identification is the process of discovering and documenting potential risks that could affect a project, product, or organization.

Official definition
ISTQB Official Glossary Definition
The process of finding, recognizing and describing risks.

(Definition reproduced from the ISTQB Glossary. Copyright belongs to ISTQB.)

View the complete ISTQB Glossary

What is Risk Identification?

The goal is to recognize possible threats early so they can be analyzed, prioritized, and managed appropriately.

Early discovery: Risks are identified before they become problems.

Broad participation: Stakeholders contribute different perspectives.

Foundation: Identification is the first step of risk management.

Real World Example

A regulated product team is preparing a release where Risk identification appears in reviews, test design conversations, or defect triage rather than as an isolated glossary word.

The risk is that the team treats Risk identification as interchangeable with nearby ISTQB terms. That makes test scope blurry and can lead to weak evidence for the release decision.

The tester anchors the discussion in the official definition, asks where the concept appears in the product, and designs examples that show the difference between Risk identification and similar ideas.

The page becomes useful in practice because Risk identification is connected to a specific testing decision, not memorized as a detached definition.

Practice Questions

Question 1

Which statement BEST describes Risk identification in the context of ISTQB terminology?

Question 2

A tester needs to explain Risk identification to a non‑technical stakeholder. Which approach is MOST appropriate?

Test your knowledge with real ISTQB-style questions

You’ve learned Risk Identification. Test your understanding with topic-specific questions in our Mock Exams.

Go to Mock Exams