---
sourceDocument: Australia IT Service Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/it-service-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia IT Service Management

ft:clusterId :

    - itsm

bundleId :

    - itsm

workflow :

    - Technology


---

# Create an incident in Service Operations Workspace

# Create an incident in Service Operations Workspace {#ariaid-title1}

Release version: Australia  
Updated March 12, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read  
Track the investigation, possible solutions, and resolution of a problem for a
customer.

## Before you begin

Role required: itil or admin

## Procedure

1. Perform one of the following actions to start creating an incident.

   | Option | Description |
   | From the List menu | 1. From the primary navigation, click the list icon (![List icon]()). 2. Click the add icon (![add icon]()) next to the List tab. 3. Click New Incident. {#create-incident-sow__ol_ggy_vtp_5sb} |
   | From an incident list | 1. Navigate to a list of incidents. Note: Following lists are available for incidents: * Assigned to me * Unassigned * Open * Resolved * All {#create-incident-sow__ul_qvd_55p_5sb} 2. Click New. {#create-incident-sow__ol_xhy_xlk_5sb} |
   | From an interaction | 1. Open an interaction. 2. From the record page, select Create incident. {#create-incident-sow__ol_bmy_1mk_5sb} |
   |-|-|

   {#create-incident-sow__choicetable_vrd_rrt_tsb}
2. On the form, fill the fields in the Details tab.  
   {#create-incident-sow__table_un2_dyl_n3b__entry__2}

   | Field | Description |
   |-|-|
   | Incident ||
   | Short description | Brief description of the incident. |
   | Description | Detailed explanation of the incident. |
   | Number | Auto-generated unique number to identify the incident record. |
   | Caller | User who contacted you with an issue. Begin typing the first name of the caller to select from a list of matching names, or look up and select the user. |
   | Location | Location of the caller. |
   | Channel | Mode of communication taken by the user to create the incident. |
   | State | Different states through which the incident proceeds during its life cycle. |
   | Impact | The effect of an incident, problem, or change on the business processes. |
   | Urgency | How long the resolution can be delayed until an incident, problem, or change has a significant business impact. |
   | Priority | How quickly the service desk should address the task. Priority is based on impact and urgency. |
   | Impact ||
   | Service | Business service that is affected. |
   | Configuration item | Configuration item that is affected. |
   | Service Offering | Consists of one or more service commitments that uniquely define the level of service in terms of availability, scope, pricing, and packaging options. Service offering enables you to receive different features and their levels of performance for a given service. |
   | Business impact | Impact of the incident. |
   | Assignment ||
   | Assignment group | Group to work on this incident. If you do not provide a value, the incident is automatically assigned based on assignment rules. |
   | Assigned to | The user to work on this incident. Note: If the Assignment group changes, the Assigned to field is cleared. |
   | Notes ||
   | Additional comments (Customer visible) | More information about the issue as needed. All users who can view incidents can also see additional comments. |
   | Work notes | Information about how to resolve the incident or steps taken to resolve it, if applicable. |
   | Related Records ||
   | Parent Incident | Associated parent incident that makes the current incident a child incident. Note: When the parent incident is resolved, the child incident is also marked as resolved. |
   | Problem | Any related problem record. |
   | Change Request | Any related change request. |
   | Caused by Change | Associated change request that prompted the creation of the incident. |
   [Table 1. Create Incident form]

   {#create-incident-sow__table_un2_dyl_n3b}
3. Click Save.
**Related concepts**   

* [Viewing incident record information using the Contextual side panel](https://servicenow-prod.fluidtopics.net/Is~pVulzhychaejFJSbfIg "View the incident record information, such as caller details and assets, from the Contextual side panel. Use this information to help manage an incident more efficiently.")
* [Remedial actions using Playbook](https://servicenow-prod.fluidtopics.net/xJ66u1YJJn1tqsmwiBx5tQ "Resolve the CI-related issues using the remedial actions using Playbook in the Investigate tab.")
* [Incident Management in Service Operations Workspace reference](https://servicenow-prod.fluidtopics.net/EEy54zsTSXlJtO7t~l_vVg "Reference topics provide additional information about Incident Management in Service Operations Workspace.")  
**Related tasks**   

* [View and update incident information on the Overview tab](https://servicenow-prod.fluidtopics.net/6ZJ5lZc63TAqEOfGcrEQHg "View and update the incident information, such as summary, impact, cause, and resolution, from the Overview tab. This incident information helps you analyze the issue and resolve the incident quickly.")
* [Work on an incident list page in Service Operations Workspace](https://servicenow-prod.fluidtopics.net/JEehtYaqJl5l8F9K1_u6YQ "Perform various actions on an incident from the incident list page in Service Operations Workspace (SOW).")
* [Work on an incident record in Service Operations Workspace](https://servicenow-prod.fluidtopics.net/QurZTkwKnKIiMg5xEkZyDA "If resolving the incident involves creating a problem, change, service request, and so on, you can create them directly from the incident record.")
* [Close resolved incident](https://servicenow-prod.fluidtopics.net/73gjz_3ufF~D~TSgW5EVIg "Close a resolved incident when the user is satisfied with the provided resolution.")
* [Reopen an incident in Service Operations Workspace](https://servicenow-prod.fluidtopics.net/M~2KqqtKwJdbd~nJBMOiNw "Reopen a resolved incident from the incident record in Service Operations Workspace (SOW).")

