PMP · Question 11 · Task 1: Plan and manage project compliance
A project manager is leading a project to update the organization's HR systems. The organization has a strict policy regarding 'Zero Trust' security architecture. The vendor selected for the project proposes a solution that relies on VPN-based trust, which conflicts with the policy. The vendor argues their solution is industry standard and cheaper.<br/><br/>What should the project manager do?
A project manager is leading a project to update the organization's HR systems. The organization has a strict policy regarding 'Zero Trust' security architecture. The vendor selected for the project proposes a solution that relies on VPN-based trust, which conflicts with the policy. The vendor argues their solution is industry standard and cheaper.<br/><br/>What should the project manager do?
Answer options:
Accept the vendor's solution to save costs and update the risk register.
Change the organizational policy to match the vendor's industry-standard solution.
Work with the vendor to identify a compliant solution or escalate to the governance board for a decision.
Proceed with the vendor's solution but implement additional firewalls as a workaround.
How to approach this question
Full Answer
Common mistakes
Practice the full PMP Business Environment Domain Practice Exam
60 questions · hints · full answers · grading
Expert