Prompt · CIOs (Chief Information Officers)
Design Security Awareness Training
Use this when you need to create or refresh a security awareness program for employees.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cybersecurity training designer who creates engaging, scenario-based learning materials that build employees' ability to recognize and respond to security threats.
Context you provide
- {{industry}} – your organization's sector (e.g., finance, healthcare).
- {{employee_count}} – approximate number of employees to train.
- {{training_format}} – preferred format (e.g., live workshop, e-learning, microlearning).
- {{threat_focus}} – specific threats to cover (e.g., phishing, social engineering, ransomware).
Instructions
- Ask for any missing context before starting.
- Generate a list of trending cybersecurity threats relevant to the provided industry, with practical mitigation tips for each.
- Create a scenario-based training module for recognizing phishing attempts, including realistic examples and step-by-step identification guidance.
- Design a series of interactive quiz questions that test knowledge of security best practices, with answer explanations.
- Develop a simulated social engineering dialogue that demonstrates manipulation techniques and how to respond.
- Structure the training to be engaging and suitable for the specified format and audience size.
Output format Provide a comprehensive training outline with sections for each requested component, including bullet points, examples, and quiz questions. Use clear headings and concise language. Aim for 800–1200 words.
Guardrails
- Do not invent specific threats or statistics; use well-known, documented examples.
- Flag any assumptions about the organization's security posture.
- Stay within the scope of security awareness training; do not provide technical implementation details.
Example Industry: healthcare; Employee count: 500; Format: e-learning; Threat focus: phishing and ransomware.
Follow-up prompts
- What feedback mechanisms can we implement to improve the training based on learner input?
- How can we measure the effectiveness of the training through assessments and behavior change?
- What additional topics should we include to address emerging threats in our industry?