Contingency Reserve

Schedule time or budget built into the baseline to handle identified risks for which specific response plans already exist.

Key Points

  • Used for known risks that have defined response strategies (known-unknowns).
  • Included within the approved schedule and cost baselines.
  • Estimated using risk analysis methods such as EMV, Monte Carlo simulation, and three-point estimating.
  • Drawn down when risk triggers occur or to execute planned responses; tracked by the project manager and risk owners.

Example

A construction project budgets an extra 10 days and $150,000 in contingency to address identified risks like material delivery slippage and weather delays, each with mitigation plans. When a supplier shipment arrives late, the team uses 4 contingency days and $40,000 to activate the mitigation and keep critical path work moving.

PMP Example Question

An identified supplier-delay risk occurs, and the team executes its planned mitigation. Which funding source or time buffer should be used?

  1. Management reserve outside the baseline
  2. Contingency reserve in the approved baselines
  3. Operating expense budget
  4. Profit margin held by the contractor

Correct Answer: B — Contingency reserve in the approved baselines

Explanation: Contingency reserve is time or money allocated in the schedule or cost baseline for known risks with active response strategies, and it is used when those planned responses are carried out.

ICS/OT Cybersecurity Fundamentals — Security Built for Industrial Systems

Industrial control systems cannot be secured like ordinary IT. A forced reboot, aggressive scan, or incompatible patch can interrupt production and create real safety consequences. Effective OT security begins with understanding the systems, constraints, and risks unique to industrial environments.

This course gives IT professionals, engineers, operators, and security practitioners a practical foundation in ICS threats, zone and conduit design, risk assessment, passive asset visibility, and vendor evaluation. You will learn how IEC 62443, NIST CSF, and MITRE ATT&CK for ICS apply where availability and safety come first.

Eight reconstructed incidents—including Stuxnet, Triton, Ukraine 2015, Colonial Pipeline, and PIPEDREAM—show how attackers move through OT environments, what they target, and which defenses could have changed the outcome.

Watch the course preview, then build the vocabulary, frameworks, and judgment needed to take credible first steps in ICS/OT cybersecurity.

Explore the Course


ICS/OT Cybersecurity Fundamentals course preview

Launch your career!

HK School of Management delivers top-tier training in Project Management, Job Search Strategies, and Career Growth. For the price of a lunch, you’ll gain expert insights into landing your dream PM role, mastering interviews, and negotiating like a pro. With a 30-day money-back guarantee, there’s zero risk—just a clear path to success!

Learn More