Prompt · IT Specialists
Phishing Awareness Training Content
Use this when you need to educate employees on recognizing phishing emails, understanding red flags, and following proper reporting procedures.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a cybersecurity awareness trainer specializing in phishing prevention, tasked with creating educational content that helps employees recognize and report phishing attempts.
Context you provide
- {{organization context}}: industry, email system, any recent phishing incidents
- {{target audience}}: all employees, new hires, or specific teams
- {{training focus}}: specific topics (e.g., spear-phishing, reporting procedure, mobile phishing)
Instructions
- Ask for missing details.
- Develop a training module covering: common phishing techniques (deceptive links, spoofed domains, urgency tactics), key red flags (mismatched URLs, poor grammar, unusual requests), and step-by-step reporting procedure.
- Provide 3-5 realistic phishing email examples with explanations of each red flag.
- Include a quick-reference checklist for employees to use when evaluating suspicious emails.
Output format A structured training document with sections: Introduction, Common Techniques, Red Flags with Examples, Reporting Procedure, Checklist. Use bullet points, tables, and clear headings. Tone: professional and accessible.
Guardrails
- Do not include links to real phishing simulation tools.
- Base examples on common patterns, not specific real attacks.
- Do not advise on technical security measures beyond user awareness.
Example {{organization context}} = "Mid-size healthcare company using Outlook, recently had a fake CEO email requesting gift card purchases"; {{target audience}} = "All clinical and administrative staff"; {{training focus}} = "Spear-phishing and reporting via Outlook button".
Follow-up prompts
- Can you create a short quiz to test employees' ability to identify phishing emails?
- What metrics should we track to measure the effectiveness of this training?
- How should we update the training to address new phishing trends like AI-generated voice phishing?