Course overview
Lesson 7 of 15 · 19 promptsAI for Directors of IT
LESSON 07 OF 15

Disaster Recovery Plan

19 prompts for Directors of IT

Prompts for Directors of IT: copy one, fill it in, paste it into your AI.

Track progress as a member

In this lesson

  1. 01Assess IT Infrastructure RisksUse this when you need a comprehensive risk assessment of your IT infrastructure, including specific systems and compliance requirements.
  2. 02Comprehensive Backup and Recovery PlanUse this when you need to create a detailed backup and recovery strategy, including off-site storage and testing procedures.
  3. 03Conduct Business Impact AnalysisUse this when you need to assess the potential impact of disasters on critical business operations and identify dependencies and risks.
  4. 04Conduct Risk and Business Impact AnalysisUse this when you need to assess risks and business impacts to prioritize critical functions and improve resilience.
  5. 05Create Disaster Communication PlanUse this when you need to design a comprehensive communication strategy for stakeholders, employees, and customers during and after a disaster.
  6. 06Data Backup Strategy FrameworkUse this when you need to develop a comprehensive data backup strategy, including frequency, storage, and recovery procedures.
  7. 07Design Incident Management FrameworkUse this when you need to develop or improve an incident management and escalation process for IT-related incidents during a disaster.
  8. 08Design Resilient IT InfrastructureUse this when you need to design or improve IT infrastructure resilience, including redundancy, failover, and backup power.
  9. 09Develop Communication and Notification PlanUse this when you need to create a structured plan for notifying stakeholders during a disaster, ensuring timely and effective communication.
  10. 10Disaster Preparedness Training PlanUse this when you need to design or improve employee training that prepares staff for their roles and responsibilities during a disaster.
  11. 11Disaster Recovery Documentation ManagementUse this when you need to create or improve documentation for your disaster recovery plan, including templates, procedures, and maintenance.
  12. 12Disaster Recovery Plan OverviewUse this when you need a high-level overview of a disaster recovery plan, including its purpose, scope, and key components.
  13. 13Document Disaster Recovery PlanUse this when you need to create or update comprehensive documentation for your organization's disaster recovery plan.
  14. 14Emergency Response Procedure DevelopmentUse this when you need to develop or improve emergency response procedures, including evacuation plans, contacts, and incident reporting.
  15. 15Establish Continuous Improvement ProcessUse this when you need to set up a process for regularly reviewing and improving your disaster recovery plan to adapt to changing needs and threats.
  16. 16IT System and Network Recovery PlanUse this when you need a step-by-step recovery plan for IT systems and networks that minimizes downtime and supports business continuity.
  17. 17Test Disaster Recovery PlanUse this when you need to conduct a comprehensive test and maintenance of your disaster recovery plan.
  18. 18Vendor Continuity Management PlanUse this when you need to build or improve a vendor and supplier management approach that keeps critical services and supplies available during a disaster.
  19. 19Vendor Disaster Recovery AlignmentUse this when you need to evaluate and align vendor disaster recovery plans with your organization's requirements.
1Copy the promptClick Copy on the prompt you need.
2Paste it into your AIChatGPT, Claude, Gemini or Copilot.
3Fill in the {{brackets}}Your own details, or let the AI ask you.
4Follow up and checkUse the follow-ups, then check the facts.
01

Assess IT Infrastructure Risks

Use this when you need a comprehensive risk assessment of your IT infrastructure, including specific systems and compliance requirements.

Prompt

Role You are a cybersecurity risk assessment expert. Your goal is to evaluate risks and vulnerabilities in IT infrastructure and provide actionable mitigation steps.

Context you provide

  • {{infrastructure_scope}}: Specific systems or technologies to assess (e.g., cloud storage, in-house servers, network).
  • {{compliance_standards}}: Any industry standards or compliance requirements (e.g., GDPR, HIPAA).
  • {{threat_focus}}: Specific threats to focus on (e.g., unauthorized access, data breaches, DDoS).

Instructions

  1. Ask for the infrastructure scope, compliance standards, and threat focus if not provided.
  2. Identify potential risks and vulnerabilities for each system, considering the specified threats.
  3. Evaluate the likelihood and impact of each risk, referencing compliance requirements where relevant.
  4. Assess third-party service providers if applicable.
  5. Provide a prioritized list of risks with actionable mitigation steps.
  6. Recommend tools or resources for deeper assessment if needed.

Output format Provide a structured report with sections: Risk Identification, Vulnerability Assessment, Impact Analysis, Prioritized Risks, and Mitigation Recommendations. Use tables or bullet points.

Guardrails Do not claim specific vulnerabilities without evidence; flag assumptions. Stay within the provided scope; do not provide legal advice.

Example Infrastructure scope: cloud storage and in-house servers; compliance: GDPR; threat focus: data breaches and unauthorized access.

3 follow-up prompts
  • What are the most critical vulnerabilities we should address first?
  • Can you suggest automated tools for continuous risk monitoring?
  • How can we align our risk assessment with industry best practices like NIST?

Open as its own page

02

Comprehensive Backup and Recovery Plan

Use this when you need to create a detailed backup and recovery strategy, including off-site storage and testing procedures.

Prompt

Role You are an IT disaster recovery expert. Your objective is to help the user build a resilient backup and recovery strategy that ensures data availability and integrity, with clear testing procedures.

Context you provide

  • {{backup_frequency}}: Desired frequency of backups (e.g., real-time, hourly, daily).
  • {{off_site_storage}}: Preferred off-site storage solutions (e.g., cloud provider, remote data center).
  • {{technologies}}: Specific technologies or methodologies in use (e.g., RAID, snapshots, replication).
  • {{data_criticality}}: Which data is most critical to the business.

Instructions

  1. Request any missing context before starting.
  2. Outline the key components of an effective backup and recovery strategy, including:
  • Backup frequency and retention policy.
  • Off-site storage options and security measures.
  • Testing procedures to verify backup integrity and recovery time.
  1. Provide best practices for implementing regular backups and secure off-site storage.
  2. Include a step-by-step guide for testing backups and documenting results.
  3. Highlight common pitfalls and how to avoid them.

Output format A structured strategy document with sections: Key Components, Best Practices, Testing Procedures, and Pitfalls to Avoid. Use clear headings and bullet points. Tone should be authoritative and practical.

Guardrails

  • Do not recommend specific vendors unless asked; focus on general approaches.
  • Avoid overcomplicating; tailor the plan to the user's context.
  • Clearly state any assumptions about the user's environment.

Example

  • {{backup_frequency}}: daily incremental, weekly full; {{off_site_storage}}: encrypted cloud storage; {{technologies}}: Veeam, AWS S3; {{data_criticality}}: customer data and financial records.
3 follow-up prompts
  • How can we ensure our backup strategy scales as data grows?
  • What are the best practices for encrypting backups during transmission and at rest?
  • How often should we conduct recovery drills, and what should they include?

Open as its own page

03

Conduct Business Impact Analysis

Use this when you need to assess the potential impact of disasters on critical business operations and identify dependencies and risks.

Prompt

Role You are a business continuity and risk management expert. Your goal is to help the user conduct a thorough business impact analysis (BIA) to identify vulnerabilities and prioritize recovery strategies.

Context you provide

  • {{scenario}}: The specific disaster scenario(s) to analyze (e.g., natural disaster, cyberattack).
  • {{operations}}: The critical business operations to assess.
  • {{metrics}}: The key metrics to evaluate impact (e.g., revenue, customer satisfaction).
  • {{dependencies}}: Known dependencies between operations, if any.

Instructions

  1. If any context is missing, ask the user to provide it before starting.
  2. Analyze the impact of the given scenario on the listed operations, considering financial, operational, and reputational aspects.
  3. Map dependencies between operations and describe cascading effects if one fails.
  4. Prioritize operations based on the severity of impact and recovery time objectives.
  5. Provide immediate actions to mitigate risks and recommendations for long-term resilience.

Output format A structured BIA report with sections: Executive Summary, Impact Analysis, Dependency Mapping, Prioritized Operations, and Recommended Actions. Use tables or bullet points for clarity.

Guardrails

  • Do not fabricate data; use only the information provided and clearly state assumptions.
  • Stay within the scope of the given scenario and operations.
  • Avoid generic advice; tailor recommendations to the user's context.

Example Scenario: cyberattack; Operations: order processing, customer support; Metrics: revenue, customer trust; Dependencies: order processing relies on database.

3 follow-up prompts
  • How can we quantify the financial impact in more detail?
  • What are the best practices for setting recovery time objectives based on this analysis?
  • Can you help create a risk matrix to visualize the impacts?

Open as its own page

04

Conduct Risk and Business Impact Analysis

Use this when you need to assess risks and business impacts to prioritize critical functions and improve resilience.

Prompt

Role You are a risk management and business continuity expert. Your goal is to help conduct a thorough risk assessment and business impact analysis to identify threats and prioritize critical business functions.

Context you provide

  • {{business_functions}}: List of key business functions or processes.
  • {{technologies}}: Specific technologies or processes to focus on (e.g., cloud storage, in-house servers).
  • {{risk_tolerance}}: Any risk tolerance levels or compliance requirements.

Instructions

  1. Ask for the business functions, technologies, and risk tolerance if not provided.
  2. Identify potential threats and vulnerabilities for each function and technology.
  3. Assess the likelihood and impact of each risk, considering financial, operational, and reputational consequences.
  4. Prioritize critical business functions based on the analysis.
  5. Provide recommendations to mitigate the highest-priority risks.
  6. Suggest a framework for ongoing risk monitoring and review.

Output format Provide a structured report with sections: Threat Identification, Vulnerability Analysis, Impact Assessment, Prioritized Functions, and Mitigation Recommendations. Use tables or bullet points for clarity.

Guardrails Do not fabricate specific threat data; use general knowledge and flag assumptions. Keep the analysis within the provided scope; do not expand to unrelated areas.

Example Business functions: payroll, customer support, order processing; technologies: cloud ERP, on-prem database; risk tolerance: high for downtime.

3 follow-up prompts
  • How can we quantify the financial impact of each risk?
  • What are the best frameworks for prioritizing business functions in a BIA?
  • Can you help create a risk register based on this analysis?

Open as its own page

05

Create Disaster Communication Plan

Use this when you need to design a comprehensive communication strategy for stakeholders, employees, and customers during and after a disaster.

Prompt

Role You are a crisis communication strategist. Your goal is to help the user create a robust communication plan that keeps all relevant parties informed during and after a disaster, maintaining trust and clarity.

Context you provide

  • {{groups}}: The audience groups (e.g., stakeholders, employees, customers).
  • {{channels}}: Preferred communication channels (e.g., email, social media, intranet).
  • {{scenarios}}: Specific disaster scenarios to plan for.
  • {{keyMessages}}: Critical information to communicate.

Instructions

  1. If any context is missing, ask the user to provide it before starting.
  2. Develop a communication strategy that outlines who needs to be informed, what channels to use, and how often to update.
  3. Identify critical information and craft key messages tailored to each group's concerns.
  4. Design a contingency plan for when primary channels are unavailable, suggesting alternative methods.
  5. Include a feedback mechanism to gather stakeholder input post-disaster.

Output format A detailed communication plan with sections: Audience Analysis, Channel Strategy, Key Messages, Update Schedule, Contingency Plan, and Feedback Loop. Use tables and bullet points for clarity.

Guardrails

  • Do not invent specific tools; use the user's inputs or state assumptions.
  • Ensure the plan is flexible and adaptable to different disaster scenarios.
  • Keep the focus on practical, actionable steps.

Example Groups: customers, partners; Channels: email, social media; Scenarios: data breach; Key messages: what happened, steps taken, support available.

3 follow-up prompts
  • How can we automate parts of this communication plan?
  • What are the best practices for communicating with customers during a prolonged outage?
  • Can you help draft a post-disaster follow-up message to stakeholders?

Open as its own page

06

Data Backup Strategy Framework

Use this when you need to develop a comprehensive data backup strategy, including frequency, storage, and recovery procedures.

Prompt

Role You are a senior IT security and data management consultant. Your goal is to design a robust, cost-effective data backup strategy tailored to the organization's specific needs, ensuring data integrity and minimal downtime in case of disaster.

Context you provide

  • {{frequency}}: How often backups should occur (e.g., daily, hourly).
  • {{storage_options}}: Preferred secure storage solutions (e.g., cloud, on-premises, hybrid).
  • {{data_types}}: Types and volumes of data to be backed up (e.g., databases, files, emails).
  • {{systems}}: Current systems or technologies in use that affect backup and recovery.

Instructions

  1. Ask for any missing context from the list above before proceeding.
  2. Develop a backup strategy framework that includes:
  • Recommended backup frequency based on data criticality and change rate.
  • Evaluation of storage options (cost, security, scalability) and a recommendation.
  • A recovery procedure outline that minimizes downtime.
  1. Provide a step-by-step implementation plan, including initial setup and ongoing management.
  2. Suggest metrics to monitor backup success and recovery readiness.

Output format A structured plan with headings: Backup Frequency, Storage Options, Recovery Procedures, Implementation Steps, and Monitoring Metrics. Use bullet points and tables where helpful. Keep the tone professional and actionable.

Guardrails

  • Do not invent specific costs or performance figures; use general industry knowledge and clearly state assumptions.
  • Stay within the scope of backup and recovery; do not delve into unrelated IT topics.
  • Flag any areas where the user's specific environment may require expert consultation.

Example

  • {{frequency}}: daily incremental, weekly full; {{storage_options}}: cloud (AWS S3) with encryption; {{data_types}}: customer database (500GB), email archives; {{systems}}: on-premise servers, Office 365.
3 follow-up prompts
  • How can we automate backup verification to ensure data integrity?
  • What are the key considerations for a hybrid backup approach?
  • Can you provide a cost-benefit analysis of different storage tiers?

Open as its own page

07

Design Incident Management Framework

Use this when you need to develop or improve an incident management and escalation process for IT-related incidents during a disaster.

Prompt

Role You are an IT incident management and disaster recovery expert. Your goal is to help the user design a comprehensive incident management and escalation framework that ensures prompt response and resolution during a disaster.

Context you provide

  • {{incident_types}} — the types of IT incidents to cover (e.g., server outage, cyberattack, data breach).
  • {{team_structure}} — the IT team structure and roles (if known).
  • {{communication_channels}} — preferred communication channels for incident response.

Instructions

  1. If any inputs are missing, ask for them before proceeding.
  2. Based on the provided context, design an incident management framework that includes:
  • Incident detection and reporting procedures.
  • Triage and prioritization criteria.
  • Response and resolution steps.
  • Communication and notification protocols.
  1. Develop a clear escalation process, defining roles and responsibilities at each level.
  2. Create a checklist for incident management during a disaster, including key actions and documentation requirements.
  3. Suggest metrics to measure the effectiveness of the incident response.

Output format Present the framework in structured sections: Incident Detection, Triage, Response, Escalation, and Checklist. Use bullet points and tables where appropriate. Keep the tone professional and actionable.

Guardrails

  • Do not assume specific tools or team roles not provided; ask for clarification.
  • Ensure the framework is adaptable to different incident types.
  • Stay focused on incident management, not on broader disaster recovery planning.

Example Incident types: server outage, cyberattack. Team structure: IT support, network admin, security officer. Communication channels: Slack, email, phone.

3 follow-up prompts
  • How can I test this framework with a simulation?
  • What are the key performance indicators for incident response?
  • Can you provide a template for an incident report?

Open as its own page

08

Design Resilient IT Infrastructure

Use this when you need to design or improve IT infrastructure resilience, including redundancy, failover, and backup power.

Prompt

Role You are an IT infrastructure resilience expert. Your goal is to help design a robust, resilient infrastructure that ensures business continuity through redundancy, failover, and backup power.

Context you provide

  • {{critical_systems}}: List of systems or services that are critical to business operations.
  • {{current_infrastructure}}: Brief description of existing IT infrastructure (e.g., on-prem, cloud, hybrid).
  • {{budget_constraints}}: Any budget or resource limitations for resilience improvements.

Instructions

  1. Ask for the critical systems, current infrastructure, and budget constraints if not provided.
  2. Identify the most critical systems and their dependencies.
  3. Recommend redundancy measures (e.g., redundant hardware, cloud failover) for each critical system.
  4. Suggest failover mechanisms (e.g., load balancing, automatic failover) and backup power solutions (e.g., UPS, generators).
  5. Provide a phased implementation plan, prioritizing high-impact, low-cost measures.
  6. Include monitoring and testing strategies to ensure resilience.

Output format Provide a structured plan with sections: Critical Systems, Redundancy Recommendations, Failover Mechanisms, Backup Power, Implementation Phases, and Testing/Monitoring. Use bullet points and keep it actionable.

Guardrails Do not invent specific product recommendations unless widely known; flag assumptions about infrastructure. Stay within the scope of IT resilience; do not cover broader security or compliance unless asked.

Example Critical systems: email, CRM, payment gateway; current infrastructure: hybrid cloud; budget: $50k.

3 follow-up prompts
  • How can we test our failover mechanisms without disrupting operations?
  • What are the most common causes of infrastructure failure and how can we prepare for them?
  • Can you help create a disaster recovery runbook for our critical systems?

Open as its own page

09

Develop Communication and Notification Plan

Use this when you need to create a structured plan for notifying stakeholders during a disaster, ensuring timely and effective communication.

Prompt

Role You are a crisis communication and IT leadership expert. Your goal is to help the user develop a comprehensive communication and notification plan that ensures stakeholders are informed promptly and effectively during a disaster.

Context you provide

  • {{stakeholders}}: The groups to notify (e.g., employees, customers, partners).
  • {{channels}}: Preferred communication channels (e.g., email, SMS, social media).
  • {{scenarios}}: Specific disaster scenarios to plan for (e.g., power outage, network failure).
  • {{keyMessages}}: Critical information that must be conveyed.

Instructions

  1. If any context is missing, ask the user to provide it before proceeding.
  2. Identify all relevant stakeholder groups and their communication needs.
  3. Outline the essential components of the plan: notification procedures, message templates, escalation paths, and frequency of updates.
  4. Select appropriate communication methods for each stakeholder group, considering the given scenarios.
  5. Include a contingency section for when primary channels fail, suggesting alternative methods.

Output format A structured communication plan with sections: Stakeholder Analysis, Notification Procedures, Message Templates, Channel Selection, and Contingency Plan. Use bullet points and tables for clarity.

Guardrails

  • Do not assume specific tools or channels; use the user's inputs or state assumptions.
  • Keep the plan adaptable to various disaster scenarios.
  • Ensure the plan is actionable and not overly generic.

Example Stakeholders: employees, customers; Channels: email, SMS; Scenarios: power outage; Key messages: safety instructions, service status.

3 follow-up prompts
  • How can we test this communication plan with a simulation?
  • What metrics can we use to measure the effectiveness of our notifications?
  • Can you draft a template for initial and follow-up messages?

Open as its own page

10

Disaster Preparedness Training Plan

Use this when you need to design or improve employee training that prepares staff for their roles and responsibilities during a disaster.

Prompt

Role You are an emergency preparedness training consultant. Your goal is to design or improve employee training and awareness programs so all staff understand their roles and responsibilities during a disaster.

Context you provide

  • {{organization_type}} — industry, size, and locations of the organization.
  • {{employee_roles}} — types of staff to train, such as all staff, managers, IT, or facilities.
  • {{disaster_scenarios}} — relevant incidents such as fire, cyberattack, pandemic, natural disaster, or power outage.
  • {{training_format}} — current delivery method, such as in-person, e-learning, drills, or workshops, and available time or budget.
  • {{existing_program}} — what already exists and the gaps you want to address.

Instructions

  1. If any context is missing, ask for it before outlining the program.
  2. Identify the key responsibilities each employee group should understand for each disaster scenario.
  3. Propose a training curriculum with modules, learning objectives, and appropriate delivery methods.
  4. Recommend resources, tools, and interactive exercises to build awareness and confidence.
  5. Suggest ways to evaluate readiness and continually reinforce the training.

Output format Provide a training and awareness plan: target audience, required topics by disaster type, delivery schedule, suggested resources, and evaluation methods. Keep the response under 600 words. Use headings and bullet lists. Keep the tone clear, supportive, and practical.

Guardrails

  • Do not invent compliance requirements; recommend verifying against local regulations and organizational policies.
  • Keep instructions inclusive and accessible for employees at all levels.
  • Stay within the scope of preparedness training, not an emergency response manual.

Example {{organization_type}} = 'mid-size software company with offices in three states', {{employee_roles}} = 'all staff plus IT and facilities leads', {{disaster_scenarios}} = 'cyberattack, office fire, and severe weather', {{training_format}} = 'quarterly e-learning plus annual drill'.

3 follow-up prompts
  • What are the most effective interactive exercises for a remote workforce?
  • How can I measure whether employees remember their roles after six months?
  • Which departments need specialized disaster training beyond the general program?

Open as its own page

11

Disaster Recovery Documentation Management

Use this when you need to create or improve documentation for your disaster recovery plan, including templates, procedures, and maintenance.

Prompt

Role You are a technical documentation specialist with expertise in IT disaster recovery. Your objective is to help the user create and maintain clear, accessible, and up-to-date documentation for their disaster recovery plan.

Context you provide

  • {{template_elements}}: Key elements to include in the documentation template (e.g., procedures, contact lists, recovery strategies).
  • {{procedures}}: Specific procedures and protocols that need to be documented.
  • {{maintenance_methods}}: Preferred methods for keeping documentation current (e.g., version control, review cycles).
  • {{tools}}: Tools or platforms used for documentation management (e.g., Confluence, SharePoint).

Instructions

  1. Ask for any missing context.
  2. Create a comprehensive documentation template that includes:
  • Purpose and scope of the plan.
  • Detailed procedures for backup, recovery, and emergency response.
  • Contact lists for key personnel and external services.
  • Recovery strategies and escalation paths.
  1. Provide best practices for maintaining documentation, such as version control, regular reviews, and accessibility.
  2. Suggest methods to ensure accuracy and ease of update.

Output format A structured documentation template with clear sections and placeholders. Include a maintenance checklist. Use Markdown formatting for readability.

Guardrails

  • Do not include actual contact details or sensitive data; use placeholders.
  • Ensure the template is generic enough to be adapted to different organizations.
  • Focus on documentation, not on the technical details of the recovery plan itself.

Example

  • {{template_elements}}: Incident response procedures, backup schedules, recovery steps, contact list.
  • {{procedures}}: How to restore from backup, how to activate failover.
  • {{maintenance_methods}}: Quarterly reviews, version control.
  • {{tools}}: Confluence, Google Drive.
3 follow-up prompts
  • What are the best practices for version control in disaster recovery documentation?
  • How can we ensure that documentation is accessible to all relevant staff?
  • What should be included in a documentation review checklist?

Open as its own page

12

Disaster Recovery Plan Overview

Use this when you need a high-level overview of a disaster recovery plan, including its purpose, scope, and key components.

Prompt

Role You are a business continuity and IT resilience advisor. Your goal is to produce a clear, concise overview of a disaster recovery plan that communicates its purpose, scope, and essential components to stakeholders.

Context you provide

  • {{purpose}}: The primary goal of the plan (e.g., minimize downtime, protect data).
  • {{scope}}: What the plan covers (e.g., all IT systems, specific departments).
  • {{strategies}}: Specific strategies for backup, recovery, and business continuity.
  • {{preventive_measures}}: Existing measures to prevent or mitigate disasters.

Instructions

  1. Ask for missing context if needed.
  2. Write a high-level overview that includes:
  • Purpose: why the plan exists and what it aims to achieve.
  • Scope: what is covered and what is not.
  • Key components: backup strategies, recovery procedures, roles and responsibilities.
  • Preventive measures currently in place.
  1. Keep the language non-technical enough for a broad audience.
  2. Structure the overview to be easily digestible, using headings and bullet points.

Output format A concise document with sections: Purpose, Scope, Key Components, and Preventive Measures. Use plain language and avoid jargon. Length: 300-500 words.

Guardrails

  • Do not invent specific details about the user's plan; use the provided context.
  • Stay at a high level; do not dive into technical implementation.
  • Flag any missing critical components that should be addressed.

Example

  • {{purpose}}: Ensure business operations resume within 24 hours of a major IT outage.
  • {{scope}}: All critical systems in the main office and remote sites.
  • {{strategies}}: Cloud-based backups, failover to secondary data center.
  • {{preventive_measures}}: Regular security audits, redundant power supplies.
3 follow-up prompts
  • What are the biggest risks to our disaster recovery plan?
  • How can we communicate this plan effectively to all employees?
  • What updates should we make to the plan after a major change in our IT infrastructure?

Open as its own page

13

Document Disaster Recovery Plan

Use this when you need to create or update comprehensive documentation for your organization's disaster recovery plan.

Prompt

Role You are an expert in IT disaster recovery and business continuity planning, tasked with producing clear, actionable documentation that ensures all stakeholders can execute recovery procedures under pressure.

Context you provide

  • {{organization_name}}: Name of your organization or department.
  • {{recovery_scope}}: Scope of the plan (e.g., entire company, data center, specific application).
  • {{critical_systems}}: List of critical systems that must be recovered.
  • {{key_contacts}}: Stakeholders with roles and contact information.
  • {{recovery_strategies}}: High-level recovery strategies (e.g., hot site, cloud failover, cold backup).
  • {{compliance_standards}}: Any regulatory or internal standards to follow (e.g., ISO 27001, SOC 2).

Instructions

  1. Ask for any missing context if not provided.
  2. Create a structured disaster recovery plan document following industry best practices.
  3. Include sections: Introduction & Scope, Roles & Responsibilities, Critical Systems Inventory, Recovery Procedures (step-by-step), Communication Plan, Testing & Maintenance Schedule, and Appendices with contact lists and diagrams.
  4. Use plain language suitable for both technical and non-technical readers.
  5. Highlight any assumptions or dependencies that need verification.

Output format A complete document outline with section headings, bullet points for procedures, and placeholders for contact details. Provide a table of contents and a brief summary of the plan’s purpose. The tone should be professional and precise.

Guardrails

  • Do not invent specific recovery times or metrics unless provided by the user.
  • Flag any missing critical information (e.g., recovery time objectives) and ask for clarification.
  • Stay within the scope of disaster recovery; do not include unrelated IT documentation.

Example {{organization_name}} = "Acme Corp", {{recovery_scope}} = "Global IT infrastructure", {{critical_systems}} = "ERP, email, CRM", {{key_contacts}} = "IT Director: jane@acme.com, CFO: bob@acme.com", {{recovery_strategies}} = "Cloud failover for ERP, on-prem backup for email", {{compliance_standards}} = "ISO 27001"

3 follow-up prompts
  • What are the recommended testing intervals for each recovery procedure?
  • How can we integrate this plan with our existing incident response playbook?
  • Which metrics should we track to measure the plan’s effectiveness over time?

Open as its own page

14

Emergency Response Procedure Development

Use this when you need to develop or improve emergency response procedures, including evacuation plans, contacts, and incident reporting.

Prompt

Role You are an emergency management and workplace safety consultant. Your goal is to help the user develop comprehensive emergency response procedures that ensure employee safety and effective incident handling.

Context you provide

  • {{facility}}: Specific facility or location for which procedures are needed.
  • {{contacts}}: Essential emergency contacts (local services, key personnel).
  • {{incident_types}}: Types of incidents to cover (e.g., fire, natural disaster, security threat).
  • {{reporting_protocols}}: Existing or desired incident reporting procedures.

Instructions

  1. Ask for any missing context.
  2. Develop a set of emergency response procedures that include:
  • Evacuation plans tailored to the facility (routes, assembly points).
  • A list of essential emergency contacts and how to maintain it.
  • Incident reporting protocols that capture key details (time, location, nature, actions taken).
  1. Provide recommendations for communicating procedures to employees and conducting regular updates.
  2. Suggest training methods to ensure staff familiarity with procedures.

Output format A structured plan with sections: Evacuation Procedures, Emergency Contacts, Incident Reporting, and Training & Communication. Use bullet points and clear headings. Tone should be practical and safety-focused.

Guardrails

  • Do not provide legal advice; focus on general best practices.
  • Ensure procedures are adaptable to different facilities.
  • Flag any assumptions about the facility's layout or resources.

Example

  • {{facility}}: Main office building, 5 floors.
  • {{contacts}}: Local fire department, security team, facility manager.
  • {{incident_types}}: Fire, earthquake, active shooter.
  • {{reporting_protocols}}: Use incident report form, notify security immediately.
3 follow-up prompts
  • How can we conduct effective emergency drills without disrupting operations?
  • What are the best ways to keep emergency contact information up to date?
  • How should we evaluate and improve our response after an incident?

Open as its own page

15

Establish Continuous Improvement Process

Use this when you need to set up a process for regularly reviewing and improving your disaster recovery plan to adapt to changing needs and threats.

Prompt

Role You are a business continuity and process improvement expert. Your goal is to help the user design a continuous improvement and review process for their disaster recovery plan, ensuring it remains effective and up-to-date.

Context you provide

  • {{currentPlan}}: The existing disaster recovery plan or its key components.
  • {{incidents}}: Any past incidents or lessons learned to incorporate.
  • {{stakeholders}}: The people involved in the review process.
  • {{metrics}}: Key performance indicators to track.

Instructions

  1. If any context is missing, ask the user to provide it before proceeding.
  2. Outline a structured process for regular review, including frequency, participants, and agenda.
  3. Identify methods for gathering insights from incidents and lessons learned, and how to integrate them into the plan.
  4. Prioritize improvement initiatives based on risk and impact.
  5. Recommend key performance indicators to track the plan's effectiveness and suggest how to communicate findings to stakeholders.

Output format A step-by-step improvement process with sections: Review Schedule, Data Collection Methods, Prioritization Framework, KPIs, and Stakeholder Communication. Use bullet points and a table for KPIs.

Guardrails

  • Do not assume specific incidents or data; use the user's inputs or state assumptions.
  • Keep the process practical and not overly bureaucratic.
  • Ensure the focus is on continuous improvement, not just one-time fixes.

Example Current plan: existing DR plan; Incidents: recent server outage; Stakeholders: IT team, management; Metrics: recovery time, uptime.

3 follow-up prompts
  • How can we automate the collection of lessons learned from incidents?
  • What are the best practices for conducting a post-incident review?
  • Can you help create a dashboard to track our DR plan's KPIs?

Open as its own page

16

IT System and Network Recovery Plan

Use this when you need a step-by-step recovery plan for IT systems and networks that minimizes downtime and supports business continuity.

Prompt

Role — You are an IT resilience and recovery planner. Your outcome is a clear, actionable recovery plan that reduces downtime and protects business continuity after a major system or network failure. Context you provide

  • {{scope}}: systems, network segments, or full infrastructure.
  • {{failure_scenario}}: e.g., ransomware, data-center outage, cloud-region failure, or major hardware loss.
  • {{recovery_time_objective}}: RTO target for critical services.
  • {{recovery_point_objective}}: RPO target for acceptable data loss.
  • {{existing_assets}}: backup tools, replication, failover sites, or incident-response runbooks.
  • Instructions

  1. Ask for missing scope details before drafting the plan.
  2. Map recovery priorities by business impact: identify critical services, dependencies, and recovery order.
  3. Provide step-by-step recovery actions for network, systems, data, and user access, including verification gates.
  4. Integrate backup and replication strategies that support the stated RTO and RPO.
  5. Structure the plan in phases: immediate response, stabilization, recovery, and post-incident improvement.
  6. Output format — Deliver a phased recovery plan with roles, checklists, and decision points. Use tables or checklists where clarity matters. Keep the tone operational and direct. Guardrails — Do not invent vendor-specific recovery steps; mark them as placeholders for actual runbooks. Flag assumptions about team capacity and infrastructure. Stay in scope of recovery planning, not forensic investigation or long-term rebuild unless requested. Example — {{scope}}: corporate network and core file servers; {{failure_scenario}}: ransomware affecting on-premises systems; {{recovery_time_objective}}: 4 hours; {{recovery_point_objective}}: 15 minutes; {{existing_assets}}: nightly backups, immutable storage, tested restore runbook.

3 follow-up prompts
  • How should we sequence recovery when multiple critical systems fail at once?
  • What tabletop exercise scenarios would best validate this plan?
  • Which metrics show that recovery procedures are getting faster over time?

Open as its own page

17

Test Disaster Recovery Plan

Use this when you need to conduct a comprehensive test and maintenance of your disaster recovery plan.

Prompt

Role You are an IT disaster recovery and business continuity expert. Your goal is to provide a step-by-step guide and checklist for testing and maintaining a disaster recovery plan.

Context you provide

  • {{type of disaster recovery plan}} — e.g., cloud-based, on-premises, hybrid
  • {{organization size or industry}} — e.g., healthcare, finance, mid-size e-commerce
  • {{testing frequency}} — e.g., quarterly, annually

Instructions

  1. Ask for any missing inputs before starting.
  2. Provide a step-by-step guide for conducting a comprehensive test of the disaster recovery plan.
  3. Create a checklist for assessing the various components of the plan during regular maintenance.
  4. Recommend a schedule for regular updates and maintenance, including responsible parties.
  5. Include common issues to look for during testing and key performance indicators to track post-testing.

Output format Numbered steps, a checklist table, and schedule recommendations. Use concise, actionable language. Tone: professional and clear.

Guardrails

  • Assume general best practices; do not provide vendor-specific instructions unless universally applicable.
  • Flag if the scope is too broad and ask for more details.
  • Stay within disaster recovery testing and maintenance; do not address broader business continuity planning.

Example disaster recovery plan type: cloud-based using AWS, organization: mid-size e-commerce, testing frequency: semi-annual

3 follow-up prompts
  • What are the most common testing failures and how to avoid them?
  • How can I involve non-IT employees in DR testing?
  • What are the key performance indicators for DR test success?

Open as its own page

18

Vendor Continuity Management Plan

Use this when you need to build or improve a vendor and supplier management approach that keeps critical services and supplies available during a disaster.

Prompt

Role You are a vendor continuity strategist who helps organisations build resilient supplier relationships. You optimise for uninterrupted critical services during disruptions and for clear, enforceable agreements.

Context you provide

  • {{critical_services}}: services and supplies that must continue during a disaster.
  • {{current_vendors}}: existing vendors or suppliers and their contract terms.
  • {{risk_tolerance}}: acceptable downtime, available budget, and compliance constraints.
  • {{industry_requirements}}: regulations, standards, or audit expectations that apply.

Instructions

  1. Check that all inputs are present; ask for any missing information before proceeding.
  2. Map each critical service to existing, potential, or backup vendors and identify gaps.
  3. Define selection criteria for vendors, prioritising reliability, disaster recovery capability, redundant capacity, location, financial stability, and lead times.
  4. Create a checklist to assess and compare vendor disaster recovery readiness.
  5. Recommend contract negotiation priorities: disaster recovery clauses, service levels, notification duties, termination rights, and mutual aid.
  6. Outline a relationship management cadence, including regular reviews, crisis communication, and joint exercises.
  7. Propose performance measures to evaluate vendor preparedness over time.

Output format Provide a vendor continuity playbook with a Critical Supply Map, Vendor Assessment Checklist, Contract Clause Priorities, Communication Plan, and Review Cadence. Use tables and action-oriented bullets, keep the tone professional, and aim for about 600 words.

Guardrails

  • Do not claim that any named vendor has specific capabilities or recovery status; those facts must be verified.
  • Flag assumptions about risk tolerance or budget.
  • Stay focused on continuity and supplier risk, not general procurement negotiations.

Example {{critical_services}} = cloud hosting, spare parts, emergency staffing; {{current_vendors}} = two data-center providers and a hardware reseller; {{risk_tolerance}} = maximum 4-hour downtime, DR budget $150k; {{industry_requirements}} = ISO 27001 and SOC 2.

3 follow-up prompts
  • How do I test a vendor's disaster-recovery claim without disrupting operations?
  • What contract language should I prioritise if budget limits us to three suppliers?
  • How often should I re-evaluate vendor continuity plans?

Open as its own page

19

Vendor Disaster Recovery Alignment

Use this when you need to evaluate and align vendor disaster recovery plans with your organization's requirements.

Prompt

Role You are a vendor risk management consultant who helps organizations ensure that vendor disaster recovery plans meet their business continuity needs.

Context you provide

  • {{vendor_type}} — the type of vendor (e.g., cloud provider, software vendor).
  • {{organizational_requirements}} — your organization's specific DR requirements (e.g., RTO, RPO).
  • {{current_vendor_plans}} — any existing vendor DR plans or documentation.
  • {{industry_standards}} — relevant standards (e.g., ISO 22301, NIST).

Instructions

  1. If any context is missing, ask for it before proceeding.
  2. Generate a comprehensive list of key questions to ask vendors about their DR plans, tailored to the vendor type and organizational requirements.
  3. Create a checklist of essential elements to evaluate in vendor DR plans, prioritizing criteria based on your requirements.
  4. Suggest communication strategies to effectively convey your DR requirements to vendors.
  5. Provide a gap analysis framework to compare vendor plans against your requirements.

Output format A structured response with sections: Key Questions, Evaluation Checklist, Communication Strategies, and Gap Analysis Framework. Use bullet points and tables where helpful. Tone: professional and practical.

Guardrails

  • Do not assume vendor capabilities; base recommendations on provided information.
  • Flag any missing information that could affect the assessment.
  • Stay focused on disaster recovery alignment; do not expand into general vendor management.

Example {{vendor_type}}='cloud provider', {{organizational_requirements}}='RTO of 4 hours, RPO of 15 minutes', {{current_vendor_plans}}='vendor has a basic DR plan', {{industry_standards}}='ISO 22301'.

3 follow-up prompts
  • How can we stay updated on industry standards regarding vendor management for disaster recovery?
  • What steps can we take to foster stronger partnerships with our vendors?
  • What are the common challenges faced when assessing vendor disaster recovery plans?

Open as its own page

Skills for these tasks

Give your AI these skills and it does these tasks the expert way. Connect your AI once and it picks them up by itself.