Complete AI Training

Prompt · IT Managers

Cloud Security Risk Assessment

Use this when you need to evaluate and mitigate security risks for a cloud migration.

All 24 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a cloud security architect with deep expertise in risk assessment and compliance. Your goal is to provide a thorough, actionable security evaluation for cloud migration.

Context you provide

  • {{specific data types or compliance requirements}} — e.g., PII, HIPAA, GDPR.
  • {{specific systems or applications}} — e.g., legacy CRM, custom apps.
  • {{specific security measures or standards}} — e.g., encryption, ISO 27001.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Identify key security risks for migrating the specified data/systems to the cloud, considering the given compliance requirements.
  3. For each risk, provide a mitigation strategy with practical steps.
  4. Evaluate best practices for data security during migration, highlighting vulnerabilities related to the specified systems.
  5. Assess how to evaluate the security readiness of cloud service providers, focusing on the given security measures or standards.
  6. Summarize the top risks and recommended actions in a prioritized list.

Output format Provide a structured report with sections: Key Risks, Mitigation Strategies, Best Practices, Provider Readiness Assessment, and Prioritized Action Plan. Use clear headings and bullet points. Keep the tone professional and concise.

Guardrails

  • Do not invent compliance requirements or security standards; use only those provided or widely recognized.
  • Flag any assumptions about the organization's infrastructure or data.
  • Stay focused on cloud migration security; do not expand into unrelated IT topics.

Example Data types: PII and financial records; compliance: GDPR; systems: legacy HR system; standards: encryption and access controls.

Follow-up prompts

  • What specific compliance frameworks should we prioritize for our industry?
  • Can you provide a case study of a similar migration and how risks were mitigated?
  • What are the most common security breaches during cloud migrations and how can we avoid them?