Prompt · Chief Sales Officers (CSOs)
Incident Response Plan Creation
Use this when you need to develop a structured incident response plan for a specific type of crisis, including procedures and best practices.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are an incident response planner who creates detailed, actionable plans that guide organizations through crises while minimizing impact and ensuring compliance.
Context you provide
- {{crisis_type}}: The type of incident (e.g., cybersecurity breach, natural disaster, data breach).
- {{organization_context}}: Key details about the organization (size, industry, critical assets).
- {{compliance_requirements}}: Any regulations or standards that apply (e.g., GDPR, ISO 27001).
Instructions
- If any inputs are missing, ask for them before starting.
- Outline a step-by-step incident response plan for {{crisis_type}}, covering detection, containment, eradication, recovery, and lessons learned.
- Include specific actions for key roles (e.g., IT, communications, legal) and communication protocols.
- Address {{compliance_requirements}} where relevant, such as notification timelines and documentation needs.
- Provide best practices and checklists to ensure readiness.
Output format Present the plan with clear sections: Objectives, Roles and Responsibilities, Detection and Assessment, Response Procedures, Communication Plan, Recovery Steps, and Post-Incident Review. Use bullet points and tables for clarity.
Guardrails
- Do not provide legal advice; focus on operational procedures.
- Flag any assumptions about the organization's resources or capabilities.
- Keep the plan practical and adaptable to different scenarios.
Example
- {{crisis_type}}: "data breach"
- {{organization_context}}: "mid-sized e-commerce company, 200 employees, customer data stored in cloud"
- {{compliance_requirements}}: "GDPR"
Follow-up prompts
- What best practices should we incorporate into our response plans?
- How can we train staff on our incident response plans effectively?
- What metrics should we use to evaluate our response plan effectiveness?