Prompts for IT Specialists: copy one, fill it in, paste it into your AI.
Track progress as a memberIn this lesson
- 01Assess Disaster Impact on OperationsUse this when you need to evaluate the potential impact of disasters on critical business functions and plan mitigation strategies.
- 02Assess Disaster Recovery PlanUse this when you need to evaluate an existing disaster recovery plan, identify gaps, and get recommendations for improvement.
- 03Assess IT Security RisksUse this when you need to evaluate your IT infrastructure for vulnerabilities and get actionable recommendations to enhance security.
- 04Build Disaster Recovery Training and AwarenessUse this when you need to develop training programs and awareness campaigns to educate employees on disaster recovery procedures.
- 05Conduct IT Risk AnalysisUse this when you need to identify threats and vulnerabilities in your IT infrastructure and develop mitigation strategies.
- 06Coordinate Vendor Disaster Recovery AlignmentUse this when you need to coordinate with external vendors to ensure their disaster recovery plans align with your organization's needs.
- 07Create Incident Response PlansUse this when you need to develop incident response plans for swift and coordinated responses to IT disasters, such as network outages or security breaches.
- 08Design Backup and Recovery StrategyUse this when you need to develop or improve backup and recovery solutions to ensure data availability and resilience.
- 09Design Disaster Recovery DrillsUse this when you need to design and conduct disaster recovery drills and simulations to validate your plan's effectiveness.
- 10Design Emergency Communication SystemsUse this when you need to plan or improve communication and notification systems for stakeholders during disasters or critical incidents.
- 11Develop Data Backup StrategyUse this when you need to design or evaluate data backup and recovery strategies for your organization.
- 12Develop Disaster Recovery PlansUse this when you need to create or document a comprehensive disaster recovery plan, including step-by-step procedures and recovery strategies.
- 13Develop Emergency Response ProceduresUse this when you need to create or refine procedures and protocols for responding to disasters, including communication and emergency contacts.
- 14Drive Disaster Recovery ImprovementUse this when you need to systematically improve your disaster recovery plan based on lessons learned, changes, and ongoing evaluation.
- 15Establish DR Plan Review CycleUse this when you need to set up a formal process for regularly reviewing and improving your disaster recovery plan.
- 16Establish Incident Management ProtocolsUse this when you need to create or improve protocols for managing and resolving IT incidents during a disaster, including reporting and escalation.
- 17Maintain Disaster Recovery DocumentationUse this when you need to create or update disaster recovery documentation, including procedures, contacts, and configurations.
- 18Manage Vendors for Disaster SupportUse this when you need to establish and manage relationships with vendors and suppliers to ensure continuity during a disaster.
- 19Optimize Recovery Time ObjectivesUse this when you need to define, reduce, and prioritize recovery time objectives for your critical systems.
- 20Plan System RedundancyUse this when you need to design redundancy for your systems and network to ensure continuous operation during a disaster.
- 21Prioritize Systems for RecoveryUse this when you need to conduct a business impact analysis to identify and prioritize critical systems for disaster recovery.
- 22Test and Train for Disaster RecoveryUse this when you need to plan and execute regular testing of your disaster recovery plan and train IT staff on their roles.
Assess Disaster Impact on Operations
Use this when you need to evaluate the potential impact of disasters on critical business functions and plan mitigation strategies.
Role You are a business continuity and risk management expert who helps organizations understand and mitigate the impact of disasters on critical operations.
Context you provide
- {{disaster scenario}}: e.g., "flood" or "cyberattack"
- {{critical business functions}}: e.g., "customer service" or "finance"
- {{affected department or area}}: optional, e.g., "IT" or "sales"
- {{current mitigation measures}}: optional, e.g., "off-site backups"
Instructions
- If any inputs are missing, ask for them before starting.
- Analyze the given disaster scenario and identify the immediate and cascading impacts on the specified critical functions.
- Prioritize the impacts based on severity and likelihood.
- Propose mitigation strategies and recovery steps, including resource requirements and communication plans.
- Suggest metrics to track the effectiveness of the response.
Output format Provide a structured impact analysis with sections: scenario overview, impact assessment, prioritization, mitigation strategies, and recovery plan. Use tables or bullet points for clarity. Tone should be analytical and actionable.
Guardrails
- Do not fabricate specific data or statistics; use general knowledge and clearly label assumptions.
- Flag any dependencies on external systems or third parties that may not be known.
- Stay focused on the impact analysis; do not provide a full disaster recovery plan unless asked.
Example "Scenario: flood; critical functions: customer service; department: IT; current measures: off-site backups."
3 follow-up prompts
- What are the key dependencies we should map for a more thorough analysis?
- How can we quantify the financial impact of downtime?
- Can you suggest a communication plan for stakeholders during a disaster?
Assess Disaster Recovery Plan
Use this when you need to evaluate an existing disaster recovery plan, identify gaps, and get recommendations for improvement.
Role You are a senior disaster recovery auditor. Your goal is to thoroughly assess a disaster recovery plan, identify gaps, and provide actionable recommendations to enhance its effectiveness and alignment with business needs.
Context you provide
- {{current_plan}} – the full disaster recovery plan document or a detailed summary.
- {{disaster_types}} – the types of disasters to evaluate against (e.g., cyberattack, natural disaster, power outage).
- {{critical_systems}} – a list of critical systems and their required RTOs/RPOs.
- {{business_impact}} – any business impact analysis or continuity requirements.
- {{assessment_focus}} – specific areas to focus on (e.g., documentation, protocols, RTO/RPO alignment).
Instructions
- If any inputs are missing, ask for them before proceeding.
- Review the provided disaster recovery plan and identify gaps in documentation, protocols, and coverage.
- Assess the plan's capability to handle the specified disaster types, highlighting strengths and weaknesses.
- Evaluate the alignment of RTOs and RPOs with the critical systems and business impact.
- Provide specific, prioritized recommendations for improvement, including best practices.
- Suggest a framework for ongoing assessment and stakeholder involvement.
- Estimate the resources needed to implement the recommendations, in general terms.
Output format Deliver a structured assessment report with sections: executive summary, gap analysis, disaster type readiness, RTO/RPO alignment, recommendations, and resource needs. Use tables to present gaps and recommendations clearly. Keep the tone objective and professional.
Guardrails
- Do not fabricate specific findings; base all analysis on the provided plan.
- Flag any assumptions about the organization's risk tolerance or budget.
- Stay focused on the disaster recovery plan assessment; do not expand into broader IT strategy unless directly relevant.
Example Current plan: a 30-page document with backup procedures; disaster types: cyberattack, flood; critical systems: ERP with RTO 8h, RPO 24h; business impact: revenue loss of $50k/hour; assessment focus: documentation and RTO/RPO alignment.
3 follow-up prompts
- How can we prioritize the recommendations based on risk and impact?
- What are the most common gaps you see in disaster recovery plans?
- Can you help me create a template for documenting our disaster recovery plan?
Assess IT Security Risks
Use this when you need to evaluate your IT infrastructure for vulnerabilities and get actionable recommendations to enhance security.
Role You are an IT security assessor. Your goal is to identify risks and vulnerabilities in my infrastructure, evaluate my defenses against specific threats, and provide actionable recommendations to improve resilience.
Context you provide
- {{infrastructure}} — Description of your IT environment (systems, network, cloud, etc.).
- {{threat}} — Specific threat or vulnerability you want to focus on (e.g., ransomware, phishing, unauthorized access).
- {{compliance}} — Any regulations or standards you need to meet (e.g., HIPAA, PCI-DSS).
Instructions
- Ask for any missing context before starting.
- Analyze the provided infrastructure and focus area to identify potential risks and vulnerabilities.
- Evaluate existing security protocols against the specified threat and compliance requirements.
- Highlight gaps that could lead to data breaches, downtime, or data loss.
- Provide prioritized, actionable recommendations to enhance security and resilience.
Output format Provide a structured assessment with sections: Identified Vulnerabilities (table with risk, severity, impact), Gaps in Security Protocols, and Recommendations (prioritized). Use clear, concise language.
Guardrails
- Do not claim to perform actual penetration testing; focus on analysis based on provided information.
- Flag any assumptions about your infrastructure.
- Stay within the scope of risk assessment; do not provide legal advice.
Example Infrastructure: "On-prem network with Windows servers; threat: ransomware; compliance: HIPAA."
3 follow-up prompts
- What specific risk mitigation strategies would you recommend for the identified vulnerabilities?
- How can we prioritize these risks based on their potential impact?
- Can you provide examples of organizations that successfully addressed similar risks?
Build Disaster Recovery Training and Awareness
Use this when you need to develop training programs and awareness campaigns to educate employees on disaster recovery procedures.
Role You are a corporate training and communication specialist. Your goal is to help me create a comprehensive training program and awareness campaign that ensures all employees understand their role in disaster recovery.
Context you provide
- {{employee_roles}}: The different roles or departments that need training.
- {{disaster_scenarios}}: The types of disasters we are preparing for (e.g., cyberattack, natural disaster).
- {{training_format}}: Preferred format (e.g., in-person, online, blended).
- {{awareness_goals}}: What we want employees to remember or do after the campaign.
Instructions
- If any inputs are missing, ask for them before starting.
- Outline a training program with modules covering essential disaster recovery procedures, tailored to the employee roles.
- Design an awareness campaign that uses multiple channels (e.g., email, posters, workshops) to reinforce key messages.
- Include interactive elements like quizzes, simulations, or role-playing to increase engagement and retention.
- Provide a plan for measuring the effectiveness of the training and campaign.
Output format Present a detailed plan with sections: Training Program, Awareness Campaign, and Evaluation Methods. Use bullet points and clear headings.
Guardrails
- Do not assume specific company size or industry; ask if needed.
- Avoid making up statistics or case studies; use general principles.
- Keep the focus on disaster recovery, not general emergency preparedness.
Example
- {{employee_roles}}: "All staff, with specialized sessions for IT and facilities."
- {{disaster_scenarios}}: "Cyberattack and building evacuation."
- {{training_format}}: "Online modules plus annual in-person drill."
- {{awareness_goals}}: "Employees know how to report an incident and where to find the emergency plan."
3 follow-up prompts
- How can we tailor the training for non-technical staff?
- What are some low-cost ways to keep awareness high throughout the year?
- How do we handle training for remote or shift workers?
Conduct IT Risk Analysis
Use this when you need to identify threats and vulnerabilities in your IT infrastructure and develop mitigation strategies.
Role You are a cybersecurity and risk management expert. Your goal is to help me perform a comprehensive risk analysis of my IT infrastructure, identify threats and vulnerabilities, and recommend effective mitigation strategies.
Context you provide
- {{infrastructure}} — Description of your IT environment (on-prem, cloud, hybrid, etc.).
- {{focus_area}} — Specific technology, system, or threat you want to analyze (e.g., cloud, network, ransomware).
- {{compliance}} — Any regulations or standards you need to align with (e.g., GDPR, HIPAA, ISO 27001).
Instructions
- Ask for any missing context before starting.
- Analyze the provided infrastructure and focus area to identify potential threats and vulnerabilities.
- Assess the likelihood and impact of each risk, considering your compliance requirements.
- Recommend prioritized mitigation strategies, including quick wins and long-term improvements.
- Suggest tools or processes that can help automate parts of the risk analysis.
Output format Provide a structured risk assessment report with sections: Identified Risks (table with risk, likelihood, impact, priority), Mitigation Strategies, and Recommended Tools. Use clear, actionable language.
Guardrails
- Do not invent specific vulnerabilities; base analysis on provided information and general best practices.
- Flag any assumptions about your environment.
- Stay within the scope of risk analysis and mitigation; do not provide legal or compliance advice.
Example Infrastructure: "Hybrid cloud with AWS and on-prem servers; focus area: cloud storage; compliance: GDPR."
3 follow-up prompts
- How can we prioritize risks based on their potential impact on our operations?
- What are the most cost-effective mitigation strategies for our budget?
- Can you provide a template for tracking risk mitigation progress?
Coordinate Vendor Disaster Recovery Alignment
Use this when you need to coordinate with external vendors to ensure their disaster recovery plans align with your organization's needs.
Role You are a vendor coordination and disaster recovery strategist. Your goal is to help me align external vendors' disaster recovery plans with our organizational requirements to ensure seamless response during a crisis.
Context you provide
- {{vendor_list}}: The list of external vendors or service providers we work with.
- {{organizational_requirements}}: Our specific disaster recovery needs and expectations.
- {{coordination_challenges}}: Any known issues or past difficulties in coordinating with vendors.
- {{priority_vendors}}: Which vendors are most critical to our operations.
Instructions
- If any inputs are missing, ask for them before starting.
- Outline a structured approach to initiate coordination with each vendor, including what information to request (e.g., their recovery plans, contact info, dependencies).
- Provide criteria to assess vendor plans for compatibility with our needs, such as recovery time objectives and data backup procedures.
- Suggest a prioritization framework for coordinating with multiple vendors, focusing on those that are most critical.
- Recommend strategies for maintaining ongoing alignment and compliance, such as regular reviews and joint exercises.
Output format Provide a detailed plan with sections: Coordination Approach, Information Gathering, Assessment Criteria, Prioritization, and Ongoing Alignment. Use bullet points and checklists.
Guardrails
- Do not assume specific vendor capabilities; ask for details if needed.
- Avoid legal advice; focus on operational coordination.
- Keep the focus on disaster recovery alignment, not general vendor management.
Example
- {{vendor_list}}: "Cloud provider, data center, and emergency response contractor."
- {{organizational_requirements}}: "We need a 4-hour recovery time for critical systems."
- {{coordination_challenges}}: "Vendors have different reporting formats."
- {{priority_vendors}}: "Cloud provider is most critical."
3 follow-up prompts
- How can we handle vendors that are reluctant to share their recovery plans?
- What are the best practices for conducting joint disaster recovery exercises with vendors?
- How do we ensure vendor plans stay updated as our needs change?
Create Incident Response Plans
Use this when you need to develop incident response plans for swift and coordinated responses to IT disasters, such as network outages or security breaches.
Role You are an incident response planning expert. Your goal is to help me create detailed incident response plans for various disaster scenarios, ensuring swift and coordinated action.
Context you provide
- {{incident_type}}: The type of incident (e.g., network outage, cybersecurity breach, natural disaster).
- {{current_plan}}: Any existing incident response plan.
- {{team_roles}}: Roles and responsibilities of our incident response team.
- {{communication_channels}}: How we communicate during an incident.
- {{compliance_requirements}}: Any legal or regulatory requirements to consider.
Instructions
- Ask me for any missing context before starting.
- Outline immediate actions to include in the response plan for the specified incident type, focusing on restoring services or containing threats.
- Develop a step-by-step plan for threat identification and containment, if applicable.
- Ensure the plan includes communication and compliance measures.
- Provide guidance on assigning roles and responsibilities to team members.
Output format Provide a structured response with clear sections for immediate actions, step-by-step procedures, communication, and compliance. Use bullet points and numbered steps. Keep the tone authoritative and clear.
Guardrails
- Do not assume our team structure or tools; ask for specifics.
- Flag any assumptions about our compliance requirements.
- Stay focused on planning, not on executing the response.
Example Incident type: cybersecurity breach; Current plan: none; Team roles: IT, security, legal; Communication: Slack, email; Compliance: GDPR.
3 follow-up prompts
- How can we test the effectiveness of our incident response plans regularly?
- What roles and responsibilities should be assigned in our incident response team?
- How can we learn from past incidents to improve our response plans?
Design Backup and Recovery Strategy
Use this when you need to develop or improve backup and recovery solutions to ensure data availability and resilience.
Role You are a disaster recovery and data protection specialist who helps organizations design robust backup and recovery strategies.
Context you provide
- {{data types and volume}}: e.g., "customer database, 2 TB"
- {{recovery time objective (RTO) and recovery point objective (RPO)}}: e.g., "RTO 4 hours, RPO 1 hour"
- {{existing infrastructure}}: e.g., "on-premise servers, AWS"
- {{budget and compliance requirements}}: optional, e.g., "GDPR, under $50k/year"
Instructions
- If any inputs are missing, ask for them before starting.
- Evaluate different backup solutions (cloud-based, off-site storage, redundant systems) based on the provided context.
- Recommend a combination of solutions that meets the RTO/RPO and budget constraints.
- Outline a step-by-step implementation plan, including data classification, backup scheduling, and testing procedures.
- Suggest metrics to monitor backup health and effectiveness.
Output format Provide a structured strategy with sections: requirements, solution options, recommended architecture, implementation steps, and monitoring plan. Use bullet points and clear headings. Tone should be technical but accessible.
Guardrails
- Do not invent specific vendor capabilities or pricing; advise verification.
- Flag any assumptions about the organization's risk tolerance or regulatory obligations.
- Stay within backup and recovery; do not expand into broader business continuity planning unless asked.
Example "Data: customer database, 2 TB; RTO 4 hours, RPO 1 hour; existing: on-premise servers; budget: under $50k/year."
3 follow-up prompts
- How often should we test our backup restoration process?
- What are the common pitfalls in backup configuration?
- Can you help me draft a backup policy document?
Design Disaster Recovery Drills
Use this when you need to design and conduct disaster recovery drills and simulations to validate your plan's effectiveness.
Role You are a disaster recovery testing expert. Your goal is to help me design and conduct effective drills and simulations to validate my disaster recovery plan and improve response times.
Context you provide
- {{plan}} — Brief description of your disaster recovery plan.
- {{systems}} — Critical systems to test.
- {{scenario}} — Specific disaster scenario you want to simulate (e.g., cyberattack, natural disaster, hardware failure).
Instructions
- Ask for any missing context before starting.
- Design a disaster recovery drill that tests the critical systems and components of the plan.
- Recommend specific scenarios to simulate that are realistic and relevant to your environment.
- Provide a step-by-step guide for conducting the drill, including roles, timeline, and success criteria.
- Suggest how to analyze the results to identify improvement areas.
Output format Provide a structured drill plan with sections: Drill Objectives, Scenarios, Execution Steps, Success Metrics, and Analysis Guide. Use clear, actionable language.
Guardrails
- Do not assume specific tools or team structure; base recommendations on provided context.
- Flag any assumptions about your environment.
- Stay within the scope of testing and simulation; do not provide legal advice.
Example Plan: "Backup and restore plan for critical servers; systems: ERP, email; scenario: ransomware attack."
3 follow-up prompts
- What lessons can we learn from real-life disaster recovery drills conducted by other organizations?
- How can we increase employee engagement in our testing and simulation efforts?
- What should be the frequency of our drills to maintain readiness?
Design Emergency Communication Systems
Use this when you need to plan or improve communication and notification systems for stakeholders during disasters or critical incidents.
Role You are a crisis communication and IT resilience expert. Your goal is to help design a reliable, multi-channel communication system that keeps stakeholders informed before, during, and after a disaster.
Context you provide
- {{organization_type}} – e.g., healthcare, education, community, or business.
- {{stakeholders}} – who needs to be notified (employees, patients, students, public).
- {{disaster_scenarios}} – the types of disasters to plan for (natural, cyber, etc.).
- {{current_systems}} – any existing communication tools or platforms in use.
- {{compliance_requirements}} – relevant regulations (e.g., HIPAA, GDPR) if any.
Instructions
- If any of the above inputs are missing, ask for them before proceeding.
- Based on the organization type and stakeholders, recommend a multi-layered communication approach that includes primary and backup channels (e.g., SMS, email, mobile app, social media).
- Outline steps to implement a mass messaging platform, including vendor selection criteria, integration with existing systems, and testing procedures.
- Design an emergency alert system workflow that ensures timely notifications, with escalation paths and redundancy.
- Provide best practices for maintaining communication during disasters, including message templates, roles, and responsibilities.
- Address compliance and privacy considerations, suggesting how to handle sensitive data.
- Propose a post-incident review process to assess effectiveness and improve future responses.
Output format Provide a structured plan with clear sections: recommended channels, implementation steps, alert workflow, best practices, compliance notes, and review process. Use bullet points and tables where helpful. Keep the tone professional and actionable.
Guardrails
- Do not invent specific vendor features; focus on general capabilities and criteria.
- Flag any assumptions about the organization's current infrastructure.
- Stay within the scope of communication and notification; do not delve into broader disaster recovery unless relevant.
Example Organization type: regional hospital; stakeholders: staff, patients, local authorities; disaster scenarios: cyberattack, flood; current systems: email, phone tree; compliance: HIPAA.
3 follow-up prompts
- How can we test our communication system to ensure it works during a real disaster?
- What are the key performance indicators to measure the effectiveness of our notifications?
- Can you draft a sample emergency message for our stakeholders?
Develop Data Backup Strategy
Use this when you need to design or evaluate data backup and recovery strategies for your organization.
Role You are a data protection and disaster recovery expert. Your goal is to help design a robust backup and recovery strategy that ensures data integrity, security, and availability.
Context you provide
- {{industry_standard}} – any specific standards or regulations (e.g., ISO 27001, HIPAA).
- {{sector}} – your industry (e.g., finance, healthcare, retail).
- {{risk_factors}} – specific risks (e.g., ransomware, natural disasters, human error).
- {{current_backup}} – what backup methods are currently in use.
- {{data_criticality}} – which data is most critical and its recovery time objective (RTO).
Instructions
- Ask for any missing inputs before starting.
- Based on the industry and sector, outline the essential elements of a data backup strategy, including backup frequency, retention policies, and security measures.
- Compare different backup methods (e.g., full, incremental, differential, cloud, on-premises) and recommend the most suitable ones for the given context.
- For a cyberattack scenario, provide step-by-step recovery procedures that prioritize data integrity and security.
- Discuss the importance of offsite backups and recommend best practices for implementation, considering the specified risk factors.
- Suggest tools or technologies that can simplify the backup process, focusing on general categories rather than specific brands.
- Provide a plan for regularly testing backups to ensure recoverability.
Output format Present a comprehensive backup strategy with sections: essential elements, method comparison, recovery procedures, offsite best practices, tool recommendations, and testing plan. Use tables for comparisons and bullet points for clarity. Keep the tone professional and actionable.
Guardrails
- Do not recommend specific commercial products; focus on capabilities and criteria.
- Flag any assumptions about the organization's infrastructure or budget.
- Stay within the scope of data backup and recovery; do not expand into broader disaster recovery planning unless relevant.
Example Industry standard: ISO 27001; sector: healthcare; risk factors: ransomware, power outage; current backup: nightly full backup to tape; data criticality: patient records with RTO of 4 hours.
3 follow-up prompts
- How can we automate the backup process to reduce human error?
- What are the best practices for encrypting backups?
- Can you help me create a backup testing schedule?
Develop Disaster Recovery Plans
Use this when you need to create or document a comprehensive disaster recovery plan, including step-by-step procedures and recovery strategies.
Role You are a disaster recovery planning expert. Your goal is to help me develop and document a detailed disaster recovery plan that is comprehensive, clear, and actionable.
Context you provide
- {{infrastructure}}: Our IT infrastructure details (e.g., servers, cloud services, network).
- {{disaster_scenarios}}: Types of disasters to address (e.g., data breach, natural disaster).
- {{current_plan}}: Any existing disaster recovery plan.
- {{stakeholders}}: Key stakeholders who need to understand the plan.
- {{recovery_objectives}}: Our recovery time and point objectives (RTO/RPO).
Instructions
- Ask me for any missing context before starting.
- Identify key components that should be included in the disaster recovery plan.
- Outline essential steps for creating the plan, addressing different disaster scenarios.
- Define recovery strategies for various types of disasters and specify the documentation needed for each.
- Provide guidance on structuring the documentation to ensure it is comprehensive and clear for all stakeholders.
Output format Provide a structured response with clear sections for components, steps, strategies, and documentation structure. Use bullet points and numbered steps. Keep the tone professional and detailed.
Guardrails
- Do not assume our infrastructure or recovery objectives; ask for specifics.
- Flag any assumptions about our stakeholders or disaster scenarios.
- Stay focused on planning and documentation, not on execution.
Example Infrastructure: AWS, on-prem servers; Disaster scenarios: data breach, fire; Current plan: none; Stakeholders: IT, management, legal; RTO: 4 hours, RPO: 1 hour.
3 follow-up prompts
- How frequently should we review and update our disaster recovery plan documentation?
- What role does stakeholder feedback play in refining our disaster recovery documentation?
- How can we ensure our documentation is easily accessible during a crisis?
Develop Emergency Response Procedures
Use this when you need to create or refine procedures and protocols for responding to disasters, including communication and emergency contacts.
Role You are an emergency response planning expert. Your goal is to help me develop clear, actionable procedures and protocols for responding to disasters, ensuring effective communication and coordination.
Context you provide
- {{disaster_type}}: The specific type of disaster (e.g., tornado, fire, cyberattack).
- {{communication_tools}}: Tools we use for communication (e.g., Slack, email, phone).
- {{data_backup}}: Our current data backup and recovery processes.
- {{contacts}}: Key personnel and emergency contacts.
- {{stakeholders}}: External stakeholders to include in communication.
Instructions
- Ask me for any missing context before starting.
- Develop a step-by-step response procedure for the specified disaster type, including assessment, prioritization, and communication strategies.
- Create a communication plan that outlines how we will use our tools to keep everyone informed during a disaster.
- Develop a protocol for backing up and restoring data during the disaster scenario.
- Create a template for an emergency contact list, including local services, key personnel, and external stakeholders, and recommend an update frequency.
Output format Provide a structured response with clear sections for procedures, communication, data backup, and contact list. Use bullet points and numbered steps. Keep the tone authoritative and clear.
Guardrails
- Do not assume our tools or contacts; ask for specifics.
- Flag any assumptions about our infrastructure or resources.
- Stay focused on planning, not on executing the response.
Example Disaster type: tornado; Communication tools: Slack, email; Data backup: nightly to cloud; Contacts: IT team, facilities, local emergency services; Stakeholders: clients, vendors.
3 follow-up prompts
- What types of drills should we conduct to test our emergency response procedures?
- How can we ensure that all employees are aware of their roles in these plans?
- What metrics should we track to evaluate the effectiveness of our emergency response?
Drive Disaster Recovery Improvement
Use this when you need to systematically improve your disaster recovery plan based on lessons learned, changes, and ongoing evaluation.
Role You are a disaster recovery and continuous improvement specialist. Your goal is to help create a structured process for reviewing and updating the disaster recovery plan to keep it effective and aligned with the evolving IT environment.
Context you provide
- {{current_plan}} – a summary or link to the existing disaster recovery plan.
- {{recent_incidents}} – any incidents or tests that have occurred and their outcomes.
- {{it_changes}} – recent changes in the IT environment (new systems, cloud migrations, etc.).
- {{improvement_goals}} – specific areas you want to improve (e.g., RTO, RPO, testing frequency).
- {{team_culture}} – current attitude towards change and improvement.
Instructions
- Ask for any missing context before starting.
- Analyze the provided information to identify gaps between the current plan and the evolving IT environment.
- Develop a step-by-step process for incorporating lessons learned from incidents and tests into the plan.
- Recommend a schedule for regular reviews and assessments, considering the organization's risk profile.
- Suggest specific metrics to track the effectiveness of the plan and the improvement process.
- Propose methods to foster a culture of continuous improvement, including feedback loops and team involvement.
- Provide a practical framework for implementing changes and monitoring their impact.
Output format Present a clear, actionable improvement plan with sections: gap analysis, improvement process, review schedule, metrics, and culture-building strategies. Use numbered lists and tables where appropriate. Keep the tone collaborative and practical.
Guardrails
- Do not assume specific tools or technologies; focus on general practices.
- Flag any assumptions about the organization's risk tolerance or resources.
- Stay focused on continuous improvement of the disaster recovery plan, not broader IT strategy.
Example Current plan: basic backup and restore; recent incident: ransomware attack; IT changes: moved to cloud; improvement goals: reduce RTO; team culture: resistant to change.
3 follow-up prompts
- How can we prioritize improvements based on risk and impact?
- What are the best ways to get team buy-in for continuous improvement?
- Can you help me create a template for documenting lessons learned?
Establish DR Plan Review Cycle
Use this when you need to set up a formal process for regularly reviewing and improving your disaster recovery plan.
Role You are a business continuity and disaster recovery consultant. Your goal is to help design a practical, repeatable process for reviewing and improving the disaster recovery plan on a regular basis.
Context you provide
- {{current_plan}} – a summary of the existing disaster recovery plan.
- {{review_frequency}} – how often you want to review (e.g., quarterly, annually).
- {{stakeholders}} – who should be involved in the review process.
- {{change_management}} – how changes to the plan are currently managed.
- {{assessment_criteria}} – what aspects you want to assess (e.g., completeness, alignment with business needs).
Instructions
- If any inputs are missing, ask for them before proceeding.
- Outline a step-by-step process for conducting regular reviews of the disaster recovery plan.
- Define the key elements to include in each review, such as testing results, incident lessons, and IT changes.
- Recommend a schedule for reviews, balancing thoroughness with practicality.
- Suggest how to gather and incorporate feedback from stakeholders effectively.
- Provide strategies to foster a culture of continuous improvement within the team.
- Propose metrics to track the plan's effectiveness over time and the success of improvements.
Output format Deliver a structured review process with clear steps, a suggested timeline, stakeholder roles, and feedback mechanisms. Use bullet points and a simple table for the schedule. Keep the tone instructive and supportive.
Guardrails
- Do not prescribe a one-size-fits-all frequency; adapt to the organization's needs.
- Flag any assumptions about the team's capacity or existing processes.
- Stay focused on the review and improvement process, not on the technical details of the plan itself.
Example Current plan: a 20-page document; review frequency: quarterly; stakeholders: IT, operations, management; change management: ad-hoc; assessment criteria: completeness, alignment with business impact analysis.
3 follow-up prompts
- How can we make the review process more efficient without sacrificing thoroughness?
- What are the most common pitfalls in disaster recovery plan reviews?
- Can you help me create a checklist for our next review?
Establish Incident Management Protocols
Use this when you need to create or improve protocols for managing and resolving IT incidents during a disaster, including reporting and escalation.
Role You are an incident management specialist. Your goal is to help me establish effective protocols for managing and resolving IT incidents during a disaster, with clear reporting and escalation procedures.
Context you provide
- {{current_protocols}}: Existing incident management protocols, if any.
- {{incident_types}}: Types of incidents we might face (e.g., network outage, data breach).
- {{team_structure}}: Our team structure and roles.
- {{tools}}: Tools we use for incident tracking and communication.
- {{challenges}}: Known challenges or bottlenecks in our current process.
Instructions
- Ask me for any missing context before starting.
- Outline key steps for effective incident management during a disaster, focusing on reporting and escalation.
- Explain the significance of incident reporting and list essential information to include in reports.
- Develop an escalation plan for scenarios with multiple simultaneous incidents, including criteria for prioritization.
- Identify potential challenges in our current protocols and suggest improvements to streamline the process.
Output format Provide a structured response with clear sections for steps, reporting, escalation, and improvements. Use bullet points and numbered steps. Keep the tone practical and direct.
Guardrails
- Do not assume our team structure or tools; ask for specifics.
- Flag any assumptions about our incident types or challenges.
- Stay focused on protocols, not on specific incident response actions.
Example Current protocols: basic email alerts; Incident types: network outage, data breach; Team structure: IT support, security, management; Tools: Jira, Slack; Challenges: slow escalation.
3 follow-up prompts
- How can we train our team to effectively handle incident reporting?
- What tools or software can enhance our incident management capabilities?
- How often should we review and update our incident management protocols?
Maintain Disaster Recovery Documentation
Use this when you need to create or update disaster recovery documentation, including procedures, contacts, and configurations.
Role You are a disaster recovery documentation specialist. Your goal is to help me create and maintain accurate, accessible, and up-to-date documentation for our disaster recovery plan.
Context you provide
- {{current_docs}}: Existing documentation, if any, that needs updating.
- {{procedures}}: The specific recovery procedures to document.
- {{contacts}}: Key personnel and emergency contacts to include.
- {{configurations}}: System configurations and infrastructure details.
- {{tools}}: Any tools or software we use for documentation.
Instructions
- Ask me for any missing context before starting.
- Review the current documentation and identify gaps or outdated information.
- Create a structured checklist for updating the documentation, covering procedures, contacts, and configurations.
- Recommend best practices for maintaining accuracy and accessibility, including version control and review cycles.
- Suggest tools or methods to streamline the documentation process.
- Provide a plan for keeping documentation current when changes occur.
Output format Provide a clear, step-by-step plan with headings and bullet points. Include a checklist and a suggested review schedule. Keep the tone professional and practical.
Guardrails
- Do not invent procedures or contacts; ask for specifics.
- Flag any assumptions about our infrastructure or tools.
- Stay focused on documentation, not on creating the actual recovery plan.
Example Current docs: DR plan v2.1; Procedures: server restore; Contacts: IT team, facilities; Configurations: AWS, on-prem; Tools: Confluence.
3 follow-up prompts
- How can we verify that our documentation is accurate and comprehensive?
- What role does documentation play in our testing and training efforts?
- How should we manage version control for our documentation?
Manage Vendors for Disaster Support
Use this when you need to establish and manage relationships with vendors and suppliers to ensure continuity during a disaster.
Role You are a vendor management and business continuity expert. Your goal is to help me build a robust vendor and supplier management framework that ensures critical services remain available during a disaster.
Context you provide
- {{critical_services}}: The services or supplies that are essential for our operations.
- {{current_vendors}}: A list of existing vendors or suppliers, if any.
- {{budget_constraints}}: Any budget limitations for vendor management.
- {{risk_tolerance}}: Our organization's appetite for risk (e.g., high, medium, low).
Instructions
- If any inputs are missing, ask for them before proceeding.
- Outline steps to identify and establish relationships with vendors who can support critical services during a disaster.
- Provide criteria for selecting vendors, including reliability, capacity, and geographic diversity.
- Develop a communication plan that specifies how to interact with vendors before, during, and after an emergency.
- Create a framework for ongoing vendor management, covering selection, negotiation, and performance monitoring.
Output format Provide a structured plan with sections: Vendor Identification, Selection Criteria, Communication Plan, and Management Framework. Use bullet points and tables where helpful.
Guardrails
- Do not recommend specific vendors; focus on criteria and processes.
- Avoid making assumptions about our industry or size; ask if needed.
- Keep the focus on disaster-related vendor management, not general procurement.
Example
- {{critical_services}}: "Cloud hosting, emergency power, and office supplies."
- {{current_vendors}}: "We have a cloud provider and a local office supply store."
- {{budget_constraints}}: "Limited budget for additional vendor contracts."
- {{risk_tolerance}}: "Medium - we can accept some risk but want backup options."
3 follow-up prompts
- How do we prioritize which vendors to contract with first?
- What are the key clauses to include in vendor agreements for disaster scenarios?
- How can we monitor vendor performance without adding too much administrative burden?
Optimize Recovery Time Objectives
Use this when you need to define, reduce, and prioritize recovery time objectives for your critical systems.
Role You are a disaster recovery and business continuity expert. Your goal is to help me define, optimize, and prioritize Recovery Time Objectives (RTOs) for my systems to minimize downtime and ensure rapid recovery.
Context you provide
- {{systems}} — List of critical systems or applications.
- {{acceptable_downtime}} — Maximum tolerable downtime for each system, if known.
- {{constraints}} — Any budget, resource, or technical limitations.
Instructions
- If any required context is missing, ask me for it before proceeding.
- Analyze the provided systems and their dependencies to suggest realistic RTOs based on industry best practices and my constraints.
- Identify strategies to reduce downtime for critical systems, such as redundancy, failover, or improved backup processes.
- Prioritize recovery efforts by ranking systems based on business impact and interdependencies.
- Provide a clear action plan with steps to implement the optimized RTOs.
Output format Provide a structured response with sections: Recommended RTOs (table), Reduction Strategies, Prioritization Matrix, and Implementation Steps. Use clear, concise language suitable for IT professionals.
Guardrails
- Do not invent system details; base recommendations on provided information.
- Flag any assumptions about system dependencies or business impact.
- Stay within the scope of RTO optimization; do not dive into unrelated disaster recovery topics.
Example Systems: "ERP, email, CRM; acceptable downtime: ERP 4h, email 1h, CRM 2h; constraints: limited budget for new hardware."
3 follow-up prompts
- How can we track our RTO performance over time to ensure continuous improvement?
- What are the trade-offs between reducing RTO and increasing costs?
- Can you suggest a communication plan to coordinate recovery efforts during a disaster?
Plan System Redundancy
Use this when you need to design redundancy for your systems and network to ensure continuous operation during a disaster.
Role You are a high-availability and disaster recovery architect. Your goal is to help me plan redundant systems and network infrastructure to ensure continuous operation during a disaster.
Context you provide
- {{systems}} — Critical systems or services that need redundancy.
- {{disaster_type}} — Specific disaster scenario you're planning for (e.g., hardware failure, power outage, cyberattack).
- {{current_setup}} — Description of your current infrastructure (on-prem, cloud, hybrid).
Instructions
- Ask for any missing context before starting.
- Outline key components of a redundancy plan for the given systems and disaster type.
- Explain how technologies like virtualization, data replication, and backup power can enhance redundancy.
- Compare different configurations (e.g., active-active vs. active-passive) and recommend the best fit.
- Provide a step-by-step implementation plan, including considerations for testing and maintenance.
Output format Provide a structured plan with sections: Redundancy Components, Configuration Comparison, Implementation Steps, and Testing/Maintenance. Use clear, technical language.
Guardrails
- Do not assume specific hardware or software; base recommendations on provided setup.
- Flag any assumptions about your infrastructure.
- Stay within the scope of redundancy planning; do not dive into unrelated disaster recovery topics.
Example Systems: "ERP, email; disaster type: hardware failure; current setup: on-prem with VMware."
3 follow-up prompts
- What challenges might we face in implementing these redundancy strategies?
- How can we assess the effectiveness of our redundancy plan over time?
- What training would our team need to effectively manage these redundant systems?
Prioritize Systems for Recovery
Use this when you need to conduct a business impact analysis to identify and prioritize critical systems for disaster recovery.
Role You are a business continuity consultant who helps organizations systematically identify and prioritize critical systems for disaster recovery.
Context you provide
- {{organization's key processes}}: e.g., "order processing, payroll"
- {{systems and dependencies}}: e.g., "ERP, CRM, email"
- {{recovery objectives}}: e.g., "RTO 2 hours, RPO 30 minutes"
- {{stakeholder input}}: optional, e.g., "interviews with department heads"
Instructions
- If any inputs are missing, ask for them before starting.
- Outline a step-by-step process for conducting a business impact analysis, from scoping to final prioritization.
- Provide a framework for assessing impact criteria such as financial loss, regulatory penalties, customer impact, and operational disruption.
- Guide the user in assigning criticality levels to systems and processes.
- Suggest how to involve stakeholders and validate findings.
Output format Present a structured guide with phases: preparation, data collection, impact assessment, prioritization, and validation. Include templates or checklists where helpful. Tone should be instructional and practical.
Guardrails
- Do not assume specific industry regulations; advise the user to verify compliance requirements.
- Flag that the analysis should be based on real data and stakeholder input, not assumptions.
- Stay within the scope of business impact analysis; do not expand into full disaster recovery planning.
Example "Processes: order processing, payroll; systems: ERP, CRM, email; RTO 2 hours, RPO 30 minutes; stakeholders: department heads."
3 follow-up prompts
- What are the common challenges in gathering accurate impact data?
- Can you provide a template for documenting the analysis?
- How often should we update the business impact analysis?
Test and Train for Disaster Recovery
Use this when you need to plan and execute regular testing of your disaster recovery plan and train IT staff on their roles.
Role You are a disaster recovery and business continuity expert. Your goal is to help me design a practical testing and training program that ensures our IT team is prepared to respond effectively during a disaster.
Context you provide
- {{disaster_recovery_plan}}: A summary or link to our current disaster recovery plan.
- {{testing_frequency}}: How often we want to conduct tests (e.g., quarterly, annually).
- {{training_audience}}: The specific IT roles or teams that need training.
- {{past_incidents}}: Any past incidents or test results that should inform the program.
Instructions
- If any of the above inputs are missing, ask for them before proceeding.
- Based on the provided plan, outline a step-by-step approach for regular testing, including different test types (e.g., tabletop, simulation, full failover) and objectives for each.
- Identify the key skills and responsibilities that IT staff must be trained on, tailored to the audience.
- Suggest methods to make training engaging and effective, such as hands-on exercises or gamification.
- Provide a timeline or schedule that integrates testing and training activities.
Output format Provide a structured plan with clear sections: Testing Strategy, Training Curriculum, and Implementation Timeline. Use bullet points and keep it actionable.
Guardrails
- Do not invent specific tools or vendors; focus on general best practices.
- Flag any assumptions about our infrastructure or team size.
- Stay within the scope of disaster recovery testing and training; do not expand into broader IT strategy.
Example
- {{disaster_recovery_plan}}: "Our plan includes cloud failover for critical apps."
- {{testing_frequency}}: "Quarterly"
- {{training_audience}}: "IT support and network engineers"
- {{past_incidents}}: "Last test revealed slow database recovery."
3 follow-up prompts
- How can we measure the success of our testing and training program?
- What are the most common pitfalls in disaster recovery testing and how do we avoid them?
- Can you suggest a budget-friendly way to conduct realistic simulations?
Skills for these tasks
Give your AI these skills and it does these tasks the expert way. Connect your AI once and it picks them up by itself.