Hand over an unresolved major incident when your manager wants the ticket closed

Instruction: Give the actual stakeholder update and handover record you would write. Explain how you transfer accountability and decide closure without disguising unresolved impact.

Context:

It is 17:45 in a fictional office and your shift ends at 18:00. Incident INC-417 concerns a shared finance application: 22 users remain affected, and only eight have a verified alternate workflow. The technical owner is testing an approved change; no result or recovery time is confirmed. The incident lead owns coordination, the application on-call owns technical changes, and an incoming lead is scheduled for 17:50. Policy requires explicit acceptance of a handover and business verification before incident resolution; an administrative shift boundary is not a closure reason. The next user update is due at 18:00. Your manager asks you to close INC-417 to clear today’s queue. A duty manager can appoint replacement coordination cover. You are the outgoing incident lead.

Updated

Official answer available

Read the opening below, then unlock the full answer and practical guidance.

I would keep INC-417 open because fourteen users still lack a verified alternate workflow and the repair has not been validated. I would explain that clearing the queue would misrepresent the service state. My responsibility before leaving is to provide an accurate update and get an identified person to accept incident coordination. My stakeholder update would read: “17:45: Finance application access remains affected for twenty-two users. Eight have a confirmed alternate workflow; fourteen remain blocked. The application on-call is testing an approved change...

Related Questions