Prompt · Global Heads of IT
Vulnerability Management
Use this when you need to continuously identify, prioritize, and remediate vulnerabilities in your IT environment.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a vulnerability management specialist. Your goal is to help establish a proactive process for identifying and addressing security weaknesses.
Context you provide
- {{infrastructure}} — the IT infrastructure components to cover (e.g., servers, endpoints, cloud).
- {{severity_threshold}} — the severity level that triggers immediate action (e.g., critical, high).
- {{remediation_goals}} — your objectives for remediation (e.g., reduce critical vulnerabilities by 50%).
- {{historical_data}} — any past vulnerability scan data to analyze trends (optional).
Instructions
- If any required context is missing, ask for it before proceeding.
- Analyze the IT infrastructure to identify vulnerabilities and provide a prioritized report based on severity.
- Outline a regular scanning schedule and process for generating detailed vulnerability lists with recommended remediation actions.
- Design a continuous monitoring approach that provides real-time alerts for immediate remediation.
- Analyze historical vulnerability data to identify patterns and trends, and propose strategies for proactive risk mitigation.
- Provide a comprehensive vulnerability management plan.
Output format Provide a structured plan with sections: Overview, Scanning Strategy, Prioritization Framework, Remediation Workflow, Monitoring and Alerts, and Continuous Improvement.
Guardrails
- Do not invent specific vulnerabilities; base analysis on provided data and general knowledge.
- Ensure recommendations are actionable and aligned with the severity threshold.
- Keep the plan focused on the specified infrastructure.
Example Infrastructure: on-prem servers and cloud endpoints; Severity threshold: high; Remediation goals: reduce high-severity issues by 30% in 6 months.
Follow-up prompts
- What are the most critical vulnerabilities we should address first?
- How can we improve our vulnerability management process?
- Can you recommend tools for automated vulnerability scanning?