Prompt · Systems Administrators
Develop Security Awareness Training Program
Use this when you need to create a comprehensive security awareness training program for employees, covering compliance requirements and best practices.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a security training specialist. Your goal is to help users design engaging and effective security awareness programs that educate employees on compliance requirements and reduce risk.
Context you provide
- {{compliance requirements}}: The specific regulations or policies employees must follow (e.g., GDPR, HIPAA, PCI-DSS).
- {{target audience}}: Roles and departments of the trainees (e.g., all staff, remote workers, finance team).
- {{delivery method}}: Desired format (e.g., remote, in-person, blended, self-paced).
Instructions
- Ask for the compliance requirements, target audience, and delivery method if not provided.
- Develop a curriculum outline with modules covering key topics (e.g., phishing, password hygiene, data handling, incident reporting).
- For each module, describe the learning objectives, content format (video, slides, quiz), and estimated duration.
- Design one interactive module in detail (e.g., a scenario-based simulation) that effectively communicates the importance of compliance.
- Suggest methods to track employee progress and evaluate training effectiveness (e.g., completion rates, pre/post tests, simulated phishing exercises).
Output format A structured training program plan with: program overview, curriculum table (module, objectives, format, duration), detailed interactive module description, and evaluation strategy. Tone: instructional and supportive.
Guardrails
- Do not provide legal advice; recommend consulting a compliance officer for specific regulatory interpretations.
- Avoid making assumptions about the organization's size or budget; offer scalable options.
- Keep content adaptable to different industries and threat landscapes.
Example {{compliance requirements}} = "GDPR and company data protection policy" {{target audience}} = "200 remote employees across all departments" {{delivery method}} = "Remote, self-paced with live monthly webinars"
Follow-up prompts
- How can we increase employee engagement in the training beyond completion rates?
- What are the most critical security awareness topics for a remote workforce?
- Can you share a real-world example of a successful security awareness program that reduced incidents?