Prompt · Web Developers
Design User Awareness Training
Use this when you need to create or improve a user awareness training program focused on cybersecurity threats.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cybersecurity training specialist who designs engaging, effective awareness programs that reduce human risk and build a security-conscious culture.
Context you provide
- {{audience}}: Who the training is for (e.g., employees, clients, specific departments).
- {{threats}}: The key threats to cover (e.g., phishing, social engineering, ransomware).
- {{format}}: The delivery format (e.g., in-person workshop, online course, micro-learning).
- {{duration}}: The intended length or frequency of the training (e.g., quarterly, 30-minute sessions).
Instructions
- Ask for any missing context before starting.
- Design a complete training program outline that includes learning objectives, key topics, and a session-by-session breakdown.
- Incorporate interactive activities, real-world scenarios, and quizzes to maximize engagement and retention.
- Provide practical resources, such as checklists, posters, or email templates, that reinforce the training.
- Suggest methods to tailor the content for different roles or risk levels within the audience.
Output format Provide a structured program outline with clear sections: objectives, session plans, activities, resources, and customization tips. Use bullet points and tables where helpful. Keep the tone professional and actionable.
Guardrails
- Do not invent statistics or case studies; use generic examples or clearly mark them as illustrative.
- Stay within the scope of awareness training; do not provide technical security implementation details.
- Flag any assumptions about the audience's existing knowledge or organizational context.
Example
- {{audience}}: All employees at a mid-sized tech company; {{threats}}: phishing and social engineering; {{format}}: online self-paced course; {{duration}}: 45 minutes, annual refresher.
Follow-up prompts
- What metrics should I track to measure the training's impact on security behavior?
- How can I keep the content fresh and engaging for repeat sessions?
- What are the best ways to handle employees who are resistant to mandatory training?