SCP-500 Professional Standards & Competencies 5 — Questions and Answers
Question 1: A SolarWinds professional is asked to define KPIs for the monitoring program itself. Which metric best measures monitoring effectiveness?
- Total number of nodes monitored
- Mean Time to Detect (MTTD) incidents via SolarWinds alerts (Correct answer)
- Number of dashboards created
- Volume of SNMP traps received per day
Correct answer: Mean Time to Detect (MTTD) incidents via SolarWinds alerts
MTTD directly measures whether the monitoring platform is achieving its core purpose of detecting issues quickly, making it the most meaningful effectiveness KPI.
Question 2: Which professional practice should govern the retirement of a monitored node from SolarWinds?
- Delete the node immediately once decommissioned
- Archive historical data, remove alerts referencing the node, then delete it following a defined offboarding checklist (Correct answer)
- Leave the node in an unmanaged state indefinitely
- Transfer node ownership to a junior team member
Correct answer: Archive historical data, remove alerts referencing the node, then delete it following a defined offboarding checklist
A structured offboarding checklist ensures historical data is preserved, dependent alerts are cleaned up, and the removal is auditable.
Question 3: When a SolarWinds professional identifies a security vulnerability in the Orion platform, what is the professional obligation regarding disclosure?
- Patch it silently without notifying management
- Report it to the SolarWinds PSIRT and internal security team, then track remediation through the change process (Correct answer)
- Post details publicly to prompt faster vendor response
- Wait until the next scheduled maintenance window to address it
Correct answer: Report it to the SolarWinds PSIRT and internal security team, then track remediation through the change process
Responsible disclosure to SolarWinds PSIRT and internal security ensures the vulnerability is tracked, remediated properly, and handled without unnecessary exposure.
Question 4: A SolarWinds professional is designing alert routing for a 24/7 NOC. Which professional standard should guide escalation tier design?
- All alerts go to the same on-call engineer to avoid confusion
- Alert severity tiers with corresponding escalation paths, contact lists, and time-based escalation rules (Correct answer)
- Route all critical alerts directly to the CTO
- Use only email for all escalations regardless of severity
Correct answer: Alert severity tiers with corresponding escalation paths, contact lists, and time-based escalation rules
Tiered alert routing with severity-matched escalation paths ensures the right people are engaged at the right time without alert fatigue for senior staff.
Question 5: What distinguishes a professional-grade SolarWinds implementation from a basic one in terms of custom properties usage?
- Professional implementations avoid custom properties to reduce complexity
- Custom properties are used consistently to enable dynamic grouping, targeted alerting, and filtered reporting (Correct answer)
- Custom properties are used only for cosmetic labeling in dashboards
- Professional implementations use custom properties only in SAM, not NPM
Correct answer: Custom properties are used consistently to enable dynamic grouping, targeted alerting, and filtered reporting
Consistent custom property usage enables scalable, context-aware alerting and reporting that adapts dynamically as the environment changes.
Question 6: When a new SolarWinds professional joins a team, what artifact most effectively enables them to become productive quickly?
- Access to raw database exports
- A comprehensive runbook covering architecture, alert logic, escalation paths, and common troubleshooting procedures (Correct answer)
- A list of all monitored IP addresses
- Training videos from SolarWinds Academy only
Correct answer: A comprehensive runbook covering architecture, alert logic, escalation paths, and common troubleshooting procedures
A well-maintained runbook provides operational context, decision rules, and institutional knowledge that accelerates time-to-competency for new team members.
Question 7: A SolarWinds professional is asked to validate that monitoring meets compliance requirements for PCI DSS. Which capability is most directly relevant?
- NetPath hop analysis
- NCM configuration compliance policies and audit trail reporting (Correct answer)
- VoIP monitoring with MOS scoring
- Wireless heat map integration
Correct answer: NCM configuration compliance policies and audit trail reporting
NCM's compliance policies enforce and audit device configurations against PCI DSS standards, providing the audit trails required by the framework.
A SolarWinds professional is asked to define KPIs for the monitoring program itself.
Which metric best measures monitoring effectiveness?