Risk Mitigation
Risk mitigation is the process of implementing actions that reduce the likelihood or impact of identified risks.
“The process through which decisions are reached and protective measures are implemented for reducing or maintaining risks to specified levels.”
(Definition reproduced from the ISTQB Glossary. Copyright belongs to ISTQB.)
View the complete ISTQB GlossaryWhat is Risk Mitigation?
Mitigation strategies aim to prevent risks from occurring or lessen their consequences if they do occur.
Preventive actions: Reduce the probability of risk occurrence.
Impact reduction: Limits damage when risks materialize.
Planned response: Mitigation activities are defined before risks occur.
Real World Example
A regulated product team is preparing a release where Risk mitigation appears in reviews, test design conversations, or defect triage rather than as an isolated glossary word.
The risk is that the team treats Risk mitigation as interchangeable with nearby ISTQB terms. That makes test scope blurry and can lead to weak evidence for the release decision.
The tester anchors the discussion in the official definition, asks where the concept appears in the product, and designs examples that show the difference between Risk mitigation and similar ideas.
The page becomes useful in practice because Risk mitigation is connected to a specific testing decision, not memorized as a detached definition.
Practice Questions
Question 1
Which statement BEST describes Risk mitigation in the context of ISTQB terminology?
Question 2
A tester needs to explain Risk mitigation to a non‑technical stakeholder. Which approach is MOST appropriate?
Test your knowledge with real ISTQB-style questions
You’ve learned Risk Mitigation. Test your understanding with topic-specific questions in our Mock Exams.