---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Create an incident from an alert in Express List

# Create an incident from an alert in Express List {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Create an incident from an alert directly from the Express List pane, saving you the time and effort of navigating to the incident record.

## Before you begin

Role required: evt_mgmt_operator, evt_mgmt_admin  
Note:  
The evt_mgmt_user role is view-only and does not have permission to perform this action.

## Procedure

1. Navigate to WorkspacesService Operations Workspace.
2. From the navigation bar, select the Express list icon: ![Express list icon]().
3. Create an incident from a selected alert.  
   1. In the Express List pane, select the alert.  
      Note:  
      To display the individual alerts inside a group, select the chevron icon (![Chevron icon.]()) at the beginning of the alert group row.
   2. From the Close drop-down list, under Remediation actions, select Create Incident.
   {#open-incident__ol_ojc_4f4_vzb}  
   An incident is created from the selected alert and a confirmation message is displayed.
4. **Optional:** View a created incident by selecting View incident in the confirmation message.
{#open-incident__steps_ijj_m11_dzb}

*[\>]: and then


