Express List in the Service Operations Workspace for ITOM

  • Release version: Australia
  • Updated July 20, 2026
  • 3 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Express List in the Service Operations Workspace for ITOM

    The Express List feature in ServiceNow Event Management within the Service Operations Workspace provides a streamlined, sortable alert list for IT Operations Management (ITOM) customers. It helps identify and monitor health issues across datacenters by presenting quick alert information. This enables faster alert resolution, impact evaluation, issue tracking, and incident reporting, all while minimizing the clicks needed to access detailed alert data.

    Show full answer Show less

    Key Features

    • Express List Pane: Displays alerts in a sortable list with options to filter, modify displayed fields, and adjust the time range for alert data.
    • Preview Panel: Selecting an alert checkbox opens a panel showing detailed alert info such as alert number, status, duration, configuration items, metric name, node, resource, source, assignment details, last update timestamp, and impacted services. This facilitates prioritization, impact assessment, and root cause analysis without opening multiple forms.
    • Alerts in Group Tab: Shows tiles for grouped alerts, each with alert number, status, severity, configuration items, duration, metric name, and custom fields.
    • Configurable Time Range: Default display shows alerts from the last 24 hours, but users can select from preset ranges (all time up to 90 days, last 15 minutes to last week) or define a custom range. Administrators can configure default ranges per view using system properties.
    • Efficiency Enhancements: The Express List reduces clicks and consolidates alert-related information to expedite operational workflows such as monitoring, troubleshooting, tracking, and escalation.

    Note: Exporting alerts directly from the Express List is not supported; exporting requires accessing the list view in the Service Operations Workspace.

    Practical Benefits

    • Improved Monitoring: Quickly detect and assess system or application service health discrepancies.
    • Faster Resolution: Access critical alert details instantly to troubleshoot and resolve IT infrastructure issues efficiently.
    • Comprehensive Tracking: Document defects and resolutions systematically, supporting incident management processes.
    • Effective Reporting: Facilitate escalation and communication with management, IT teams, or vendors by consolidating alert data.

    The ServiceNow Event Management Express List feature helps you identify health issues across the datacenter on the Service Operations Workspace. It provides a list of quick information on alerts so you can more efficiently monitor systems and services,​ resolve alerts, evaluate the alert impact,​ track issues, and report incidents.

    The Express List pane sortable alert list reduces the number of clicks necessary to access alert information. Selecting the check box of an alert opens a preview panel where you can view data that helps for prioritization, impact realization, and root cause analysis. You can easily modify the Express List pane to narrow down the display by using a provided fields list, displaying additional alert information, and filtering out or showing matching alerts. You can also modify the displayed time range.

    Note:

    Exporting alerts is not supported from the Express List. To export alerts, open the list view in Service Operations Workspace.

    The following image shows a sample Express List pane.Express List display

    Express List benefits

    The Express List pane enables operators to more efficiently perform the following actions:
    • Monitoring systems or application services. Monitoring the performance and capability of computer systems to see any discrepancies​.
    • Resolving alerts. Working on discrepancies to troubleshoot issues and promote the efficient functioning of IT infrastructure.​
    • Tracking issues. Tracking and documenting defects and resolutions in detail and reporting incidents.
    • Reporting incidents. Escalating complex issues to management, other IT resources, third parties or vendors​.

    Alert information displayed in the Express List preview panel

    The Express List preview panel displays additional alert information on the Express List pane. This information enables you to conduct an assessment that helps in resolving incidents without having to open multiple alert forms.

    The Info tab on the preview panel displays the following information for a selected alert:You can view additional alert information by selecting any of the linked items.

    The Alerts in group tab on the preview panel displays alert information for a selected alert group. Information for each alert is displayed in a tile with additional options for each alert in the group.

    Each tile displays the following alert information:
    • Alert number (link)
    • Status
    • Severity
    • Configuration items
    • Duration
    • Metric name

    Customizing the alert display time range

    You can determine the time range of the displayed alerts. The default time range is the last 24 hours. The list continues to update with new alerts until you select the pause icon (Pause icon.). Selecting the current range setting in the upper right displays a dialog box with date and time range options:
    • All time - The last 90 days
    • Last 24 hours
    • Last 2 days
    • Last week
    • Last 12 hours
    • Last hour
    • Last 15 minutes
    • Custom - Enables you to select a date and time range from the pop-up calendar.
    The Default Time Range field is introduced on the Express List view in the following versions:
    • Service Operations Workspace Express List 26.6.1
    • Service Operations Workspace Express List App 26.4.0
    • Service Operations Workspace ITOM Apps 26.9.0

    Administrators can configure the default time range for a predefined Express List view by using the Default Time Range field. The default value is Last 24 hours.

    The evt_mgmt.express_list.all_time_days system property controls the number of days included in the All time range. It does not affect the default time range.