SDI Service Desk Analyst (SDA) Exam — Questions and Answers
Question 1: In written communication such as email or chat, what is MOST important to ensure professionalism?
- Using all capital letters to emphasise important points
- Clear, concise language free of jargon, with correct spelling and grammar (Correct answer)
- Lengthy responses to demonstrate thoroughness
- Using emoticons to appear friendly and approachable
Correct answer: Clear, concise language free of jargon, with correct spelling and grammar
Professional written communication avoids ambiguity and reflects positively on the service desk's credibility.
Question 2: What is the main advantage of quantitative risk assessment over qualitative assessment?
- It relies entirely on expert opinion
- It eliminates all subjectivity from the process
- It provides numerical estimates of risk probability and financial impact (Correct answer)
- It is faster and requires no data
Correct answer: It provides numerical estimates of risk probability and financial impact
Quantitative risk assessment uses numerical data to estimate the probability and financial consequences of risks, enabling more precise comparisons.
Question 3: What should a service desk representative do if a customer asks for something outside the scope of the service?
- Ignore the request.
- Deny the customer’s request without explanation.
- Politely explain the limits of the service and offer alternatives if possible. (Correct answer)
- Ask the customer to find another service provider.
Correct answer: Politely explain the limits of the service and offer alternatives if possible.
When a customer asks for something outside the scope of service, a service desk representative should politely explain the limitations of the service. It's important to clearly communicate what can and cannot be done within the established boundaries. If possible, offering alternative solutions or directing the customer to other relevant resources demonstrates helpfulness and maintains a positive customer relationship.
Question 4: Which statement about problem records is CORRECT?
- A problem record is automatically closed once the linked incidents are resolved
- Problem records can only be raised after a major incident review
- A problem record remains open until the root cause is permanently fixed, even if affected incidents are resolved (Correct answer)
- A problem record replaces all linked incident records in the ITSM tool
Correct answer: A problem record remains open until the root cause is permanently fixed, even if affected incidents are resolved
A problem record stays open until the underlying root cause is permanently eliminated, regardless of whether individual incident records have been closed.
Question 5: Which of the following BEST describes 'active listening' in a service desk context?
- Waiting silently until the customer finishes before speaking
- Typing notes while the customer speaks without interruption
- Repeating every word the customer says back to them
- Fully concentrating, understanding, and responding to the customer (Correct answer)
Correct answer: Fully concentrating, understanding, and responding to the customer
Active listening involves full concentration, comprehension, and thoughtful response — not just silence or mechanical repetition.
Question 6: During a compliance audit, the auditor requests evidence that access to sensitive service desk systems is based on least-privilege principles. Which type of control documentation would best satisfy this request?
- Business continuity test results
- Role-based access control matrices (Correct answer)
- Network topology diagrams
- Customer satisfaction survey results
Correct answer: Role-based access control matrices
Role-based access control (RBAC) matrices document which roles have access to which systems and at what privilege level, directly evidencing least-privilege enforcement.
Question 7: What is the purpose of conducting a 'post-incident review' (PIR) after a major incident?
- To discipline the analysts involved
- To archive the incident and close all related tickets
- To identify root causes and improvements to prevent recurrence (Correct answer)
- To renegotiate SLAs with the vendor
Correct answer: To identify root causes and improvements to prevent recurrence
A PIR examines what happened, why it happened, and what changes are needed to prevent the same major incident from recurring.
Question 8: Which ITIL service management dimension focuses on the workflows, controls, and activities needed to deliver services?
- Partners and suppliers
- Information and technology
- Value streams and processes (Correct answer)
- Organizations and people
Correct answer: Value streams and processes
The 'Value streams and processes' dimension covers how an organization's activities and workflows combine to create value.
Question 9: What does professional liability insurance protect a SDI practitioner against?
- Natural disaster damage to the office
- Financial loss from claims of negligence, errors, or omissions in professional services (Correct answer)
- Theft of office equipment
- Employee health expenses
Correct answer: Financial loss from claims of negligence, errors, or omissions in professional services
Professional liability insurance (errors and omissions coverage) protects practitioners from the financial consequences of claims alleging negligence, mistakes, or failure to perform professional duties, covering legal defense costs and settlements.
Question 10: Why is effective communication critical in customer service?
- It helps to minimize costs.
- It allows the customer to explain their issues clearly, improving the solution process. (Correct answer)
- It helps to resolve issues faster.
- It reduces the number of customer service representatives needed.
Correct answer: It allows the customer to explain their issues clearly, improving the solution process.
Effective communication is paramount in customer service as it enables customers to clearly articulate their issues and concerns. When representatives fully understand the customer's problem without misinterpretation, they can accurately diagnose the situation. This clarity is essential for developing and delivering the most appropriate and effective solution, leading to higher customer satisfaction.
Question 11: The ITIL 4 guiding principle 'progress iteratively with feedback' is most closely aligned with which approach?
- PRINCE2 stage gates
- Six Sigma DMAIC
- Agile and DevOps methods (Correct answer)
- Waterfall project delivery
Correct answer: Agile and DevOps methods
Iterative progress with continuous feedback is a core tenet of Agile and DevOps, which ITIL 4 explicitly recognizes and integrates.
Question 12: During major incident management, the role of the 'Incident Manager' is to:
- Handle inbound customer calls to free up analysts
- Coordinate all resolver groups and communicate updates to stakeholders (Correct answer)
- Update the CMDB with new configuration items
- Personally fix the technical fault
Correct answer: Coordinate all resolver groups and communicate updates to stakeholders
The Incident Manager coordinates resolver teams and ensures stakeholders receive timely, accurate communications throughout the major incident.
Question 13: What is the key focus of the ITIL Problem Management process?
- To monitor the service desk performance.
- To manage service requests.
- To resolve incidents immediately.
- To identify and eliminate the root causes of recurring incidents. (Correct answer)
Correct answer: To identify and eliminate the root causes of recurring incidents.
The key focus of the ITIL Problem Management process is to identify and eliminate the root causes of recurring incidents. While Incident Management aims to restore service quickly, Problem Management works to prevent incidents from happening again. It involves thorough investigation, documenting known errors, and implementing permanent solutions to enhance service stability and reliability.
Question 14: Which ITIL 4 practice focuses on aligning an organization's practices and services with changing business needs through identifying and implementing improvements?
- Continual Improvement (Correct answer)
- Change Enablement
- Service Level Management
- Organizational Change Management
Correct answer: Continual Improvement
Continual Improvement drives ongoing enhancements to services, practices, and the service value chain aligned with business goals.
Question 15: What does 'Mean Time Between Failures' (MTBF) measure, and why is it relevant to service desk quality?
- Average time a service or component operates without failure; higher MTBF indicates greater reliability (Correct answer)
- Average duration of incidents; longer MTBF means slower resolution
- The gap between escalation and resolution; used to measure tier-2 efficiency
- Average time between customer satisfaction surveys
Correct answer: Average time a service or component operates without failure; higher MTBF indicates greater reliability
MTBF measures reliability by calculating the average operational time between failures; a higher MTBF means fewer incidents and a higher-quality service environment.
Question 16: A service desk analyst is asked to support a system they know contains a critical unpatched vulnerability. What is the ethical course of action?
- Refuse to support the system until the vulnerability is patched
- Support the system normally and document personal concerns
- Escalate to the vendor without notifying internal management
- Inform the relevant stakeholders of the risk and continue supporting while escalating for remediation (Correct answer)
Correct answer: Inform the relevant stakeholders of the risk and continue supporting while escalating for remediation
Professionals should flag risks to the appropriate stakeholders and support escalation to remediation while continuing service delivery.
Question 17: Which behaviour is MOST likely to increase First Contact Resolution (FCR) rates?
- Routing all calls to Tier 2 immediately
- Thorough diagnosis and confirmation of resolution before ending the interaction (Correct answer)
- Limiting call duration to under two minutes
- Closing tickets quickly regardless of resolution status
Correct answer: Thorough diagnosis and confirmation of resolution before ending the interaction
FCR improves when analysts fully diagnose and verify resolution during the initial contact rather than closing prematurely.
Question 18: What does professional liability insurance protect a SDI practitioner against?
- Theft of office equipment
- Natural disaster damage to the office
- Financial loss from claims of negligence, errors, or omissions in professional services (Correct answer)
- Employee health expenses
Correct answer: Financial loss from claims of negligence, errors, or omissions in professional services
Professional liability insurance (errors and omissions coverage) protects practitioners from the financial consequences of claims alleging negligence, mistakes, or failure to perform professional duties, covering legal defense costs and settlements.
Question 19: A service desk receives an incident about a system outage affecting the entire organization. Who typically declares a 'Major Incident'?
- Automatic monitoring tools without human involvement
- A designated Incident Manager or senior authority following predefined criteria (Correct answer)
- The first analyst who logs the call
- The end user reporting the outage
Correct answer: A designated Incident Manager or senior authority following predefined criteria
Major Incidents are declared by a designated Incident Manager or senior authority using predefined impact and urgency thresholds.
Question 20: What is the best approach when handling an upset customer?
- Listen actively, empathize, and find a resolution to address their concerns. (Correct answer)
- Tell the customer to calm down.
- Quickly provide the customer with a generic response.
- Ignore the customer's concerns and proceed with the service.
Correct answer: Listen actively, empathize, and find a resolution to address their concerns.
The best approach when handling an upset customer is to first de-escalate the situation by actively listening to their concerns and empathizing with their frustration. This validates their feelings and builds rapport. Once the customer feels heard, the representative can then focus on collaboratively finding a resolution that addresses their specific issues, turning a negative experience into a positive one.
Question 21: How should a service desk professional respond when asked by a manager to violate a data protection regulation?
- Complete the task and document the manager's request as justification
- Seek clarification and comply if the manager confirms it in writing
- Comply because management instructions override regulations
- Refuse the instruction and escalate to a compliance officer or legal team (Correct answer)
Correct answer: Refuse the instruction and escalate to a compliance officer or legal team
Legal and regulatory obligations take precedence over managerial instructions; professionals must refuse unlawful directives and escalate appropriately.
Question 22: A service desk receives an alert from a monitoring tool before users notice any impact. Which ITIL practice is responsible for detecting and responding to such automated signals?
- Monitoring and Event Management (Correct answer)
- Service Configuration Management
- Incident Management
- Problem Management
Correct answer: Monitoring and Event Management
Monitoring and Event Management systematically observes services and infrastructure, detecting and categorizing events before they become incidents.
Question 23: Which of the following is an example of a CLOSED question in a service desk interaction?
- 'What were you doing before the problem started?'
- 'How long has this issue been affecting you?'
- 'Can you describe what happened when the error appeared?'
- 'Is the error appearing on all devices or just one?' (Correct answer)
Correct answer: 'Is the error appearing on all devices or just one?'
Closed questions require a short, specific answer (yes/no or a single fact) and are useful for confirming specific details.
Question 24: Which ITIL practice owns the process of moving a new or changed service into live operation?
- Release Management
- Service Validation and Testing
- Deployment Management (Correct answer)
- Change Enablement
Correct answer: Deployment Management
Deployment Management is responsible for moving new or changed hardware, software, or other components to live environments.
Question 25: Which metric best measures how quickly the service desk restores normal service after an incident?
- First Contact Resolution (FCR) rate
- Customer Satisfaction Score (CSAT)
- Mean Time to Restore Service (MTRS) (Correct answer)
- Abandon rate
Correct answer: Mean Time to Restore Service (MTRS)
MTRS measures the average time taken from incident detection to full service restoration.
Question 26: When should an analyst use the 'hold' function during a support call?
- Immediately upon answering to review the customer's account
- Freely, as customers expect to be put on hold
- Whenever they need time to think without the customer hearing
- Only when absolutely necessary, after informing the customer why and for how long (Correct answer)
Correct answer: Only when absolutely necessary, after informing the customer why and for how long
Placing a customer on hold without explanation or frequently can erode trust; it should be used sparingly and transparently.
Question 27: When logging a ticket on behalf of a customer, which piece of information is MOST critical to capture accurately?
- The customer's preferred communication channel
- The customer's full employment history within the company
- The brand of the customer's hardware
- A clear description of the issue and its business impact (Correct answer)
Correct answer: A clear description of the issue and its business impact
An accurate description of the issue and its business impact drives correct prioritisation and efficient resolution.
Question 28: A service desk analyst builds a regression model to predict CSAT scores. The model has an R² of 0.85. What does this mean?
- The model correctly classifies 85% of tickets into the right category
- 85% of CSAT survey respondents gave a positive rating
- 85% of the variance in CSAT scores is explained by the model's predictor variables (Correct answer)
- 85% of agents achieved their individual CSAT targets
Correct answer: 85% of the variance in CSAT scores is explained by the model's predictor variables
R² (coefficient of determination) measures how much of the dependent variable's variance is explained by the model's independent variables.
Question 29: A caller reports that their email client has not worked since a software update was pushed overnight. Using root cause thinking, what category of cause should be investigated FIRST?
- User error in configuring settings
- Change-related cause from the overnight update (Correct answer)
- Hardware failure
- Network bandwidth saturation
Correct answer: Change-related cause from the overnight update
When an incident follows a recent change, the change is the prime suspect for root cause and should be investigated first.
Question 30: A post-incident review (PIR) is PRIMARILY conducted to:
- Determine which analyst should be blamed for the outage
- Formally close the incident record in the ITSM system
- Calculate the financial cost of the incident for billing purposes
- Understand what went wrong, what was done well, and how to prevent recurrence (Correct answer)
Correct answer: Understand what went wrong, what was done well, and how to prevent recurrence
A PIR is a learning exercise focused on identifying improvement opportunities and preventing similar incidents in the future.
Question 31: A service desk analyst disagrees with a new policy introduced by management. The ethical response is to:
- Follow the policy while raising concerns through the appropriate feedback channels (Correct answer)
- Ignore the policy and continue using the previous process
- Comply only when supervisors are present
- Encourage colleagues to resist the policy collectively
Correct answer: Follow the policy while raising concerns through the appropriate feedback channels
Professionals comply with organizational policies while exercising the right to raise concerns constructively through proper channels.
Question 32: A service desk agent receives a call that cannot be resolved at the first level and must be passed to a specialist team. This is an example of:
- Service request fulfillment
- Workaround
- Escalation (Correct answer)
- Problem logging
Correct answer: Escalation
Escalation occurs when an incident or request is transferred to a higher-level support group with greater expertise.
Question 33: How can incident management contribute to overall IT service improvement?
- It causes delays in service.
- It makes the IT services more expensive.
- It helps identify and address recurring problems, improving IT service stability. (Correct answer)
- It reduces the need for service desk staff.
Correct answer: It helps identify and address recurring problems, improving IT service stability.
Incident management is crucial for IT service improvement because it systematically records and analyzes service disruptions. By identifying recurring incidents and their underlying causes, organizations can implement permanent solutions through problem management. This proactive approach prevents future occurrences, significantly enhancing the overall stability and reliability of IT services.
Question 34: What does the ITIL concept 'shift-left' refer to in service desk operations?
- Moving incidents to a lower priority queue during off-peak hours
- Transferring problem records to the development team
- Automating change approvals to reduce manual effort
- Resolving issues at earlier, lower-cost support tiers rather than escalating (Correct answer)
Correct answer: Resolving issues at earlier, lower-cost support tiers rather than escalating
Shift-left means enabling earlier support tiers (or users themselves) to resolve issues, reducing cost and escalation volume.
Question 35: Which approach BEST demonstrates empathy during a support interaction?
- Moving quickly to the solution without discussing the customer's feelings
- Offering a discount as compensation immediately
- Telling the customer their problem is common and not serious
- Acknowledging the customer's frustration and expressing genuine concern for resolving it (Correct answer)
Correct answer: Acknowledging the customer's frustration and expressing genuine concern for resolving it
Genuinely acknowledging feelings while committing to resolution is the foundation of empathetic service.
Question 36: Which metric would a service desk manager most likely use to measure the efficiency of incident resolution?
- Mean Time to Restore Service (MTRS) (Correct answer)
- Customer satisfaction score for onboarding
- Number of problems raised from incidents
- Number of changes implemented per quarter
Correct answer: Mean Time to Restore Service (MTRS)
MTRS (Mean Time to Restore Service) measures the average time taken to restore service after an incident, directly reflecting resolution efficiency.
Question 37: A service desk agent receives a call about a network outage affecting 200 users. What should the agent do FIRST?
- Begin troubleshooting the root cause immediately
- Ask the user to reboot their workstation
- Log the incident and check for an existing major incident record (Correct answer)
- Escalate directly to the network team without logging
Correct answer: Log the incident and check for an existing major incident record
The agent should log the incident and check whether a major incident has already been declared to avoid duplicate efforts.
Question 38: Which of the following is an example of 'reactive problem management'?
- Scheduling preventive maintenance to avoid hardware failures
- Analyzing call trends monthly to prevent future incidents
- Monitoring system performance dashboards proactively
- Raising a problem record after a major incident to determine and eliminate the root cause (Correct answer)
Correct answer: Raising a problem record after a major incident to determine and eliminate the root cause
Reactive problem management is triggered by incidents that have already occurred, with the goal of eliminating their root cause to prevent recurrence.
Question 39: During a major incident, communication updates to affected users should be sent:
- Only after the incident is fully resolved
- Once per day regardless of incident duration
- At regular, predefined intervals throughout the incident lifecycle (Correct answer)
- Only when the root cause has been identified
Correct answer: At regular, predefined intervals throughout the incident lifecycle
Regular, timely updates during a major incident keep users informed, manage expectations, and reduce inbound call volume to the service desk.
Question 40: Which body in ITIL is typically responsible for reviewing and authorizing significant changes to IT services?
- Service Level Manager
- Configuration Manager
- Problem Management team
- Change Advisory Board (CAB) (Correct answer)
Correct answer: Change Advisory Board (CAB)
The Change Advisory Board (CAB) reviews, evaluates, and authorizes significant changes to minimize risk and impact on services.
SDI Service Desk Analyst (SDA) Exam
This exam certifies individuals in the core skills and knowledge required for effective service desk operations.
Exam Rules
- You can skip questions and return to them later
- Flag questions for review before submitting
- No feedback shown until you submit the entire exam
- Unanswered questions count as wrong — answer everything
- 10 pretest questions are mixed in and don't affect your score
- Timer auto-submits when time runs out
- Your progress is auto-saved every 30 seconds