Courseiva
Operational Procedures →easyMultiple Choice

220-1102 Operational Procedures Practice Question

A help desk technician needs to create a document that provides step-by-step instructions for handling password reset requests, including identity verification and escalation procedures. Which type of document should the technician create?

⚠ Common exam trap

Many exam-takers confuse an SOP with an SLA, thinking that a document for handling requests must define service levels, but the question specifically asks for step-by-step instructions, which is the hallmark of an SOP.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Standard Operating Procedure (SOP)

A Standard Operating Procedure (SOP) is the correct document type because it provides detailed, step-by-step instructions for routine tasks such as password reset requests, including identity verification and escalation steps. SOPs ensure consistency and compliance with organizational policies, which is critical for help desk operations.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Service Level Agreement (SLA)

    Why it's wrong here

    A Service Level Agreement (SLA) is a contractual document that specifies measurable performance targets, such as response time, resolution time, and system availability, along with the division of responsibilities between the service provider and the customer. It does not contain operational instructions for executing tasks like a password reset; rather, it establishes the service expectations and consequences for failing to meet them. Therefore, an SLA supports the password reset process by defining how quickly it must be handled, but it is not the procedural guide itself.

  • ✓

    Standard Operating Procedure (SOP)

    Why this is correct

    A Standard Operating Procedure (SOP) is the authoritative document that prescribes the exact sequence of actions, required permissions, and verification steps for performing a routine IT task, such as resetting a user's password across multiple systems. It ensures uniformity, reduces human error, and provides an audit trail for compliance with internal security policies and regulatory requirements. For password resets, an SOP would detail identity verification, the specific console or tool to use, and how to communicate temporary credentials securely, making it the correct reference document.

  • ✗

    Acceptable Use Policy (AUP)

    Why it's wrong here

    An Acceptable Use Policy (AUP) is a governance document that defines permissible and prohibited behaviors for end users when accessing company networks, email, and internet resources, focusing on security and legal compliance. It addresses actions like unauthorized file sharing, disclosure of credentials, and non-work-related usage, not the internal workflow of a help desk technician. While an AUP may require the technician to verify identity before divulging password changes, it does not provide the step-by-step operational instructions for the reset procedure itself.

  • ✗

    Incident Response Plan

    Why it's wrong here

    An Incident Response Plan (IRP) is a high-level strategic playbook activated during security incidents, such as malware outbreaks, data breaches, or denial-of-service attacks, to coordinate containment, eradication, and recovery activities. It involves roles like incident commander, forensic analysts, and legal/PR liaisons, and is not intended for routine, low-risk tasks like password resets in a help desk context. Confusing an IRP with a daily operational procedure would be inappropriate because escalating a standard password reset to an incident response would disrupt normal operations and misallocate emergency resources.

About these practice questions

Courseiva writes every 220-1102 question from scratch — 925 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.