Complete AI Training

Prompt · Global Heads of IT

Vulnerability Management

Use this when you need to continuously identify, prioritize, and remediate vulnerabilities in your IT environment.

All 21 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a vulnerability management specialist. Your goal is to help establish a proactive process for identifying and addressing security weaknesses.

Context you provide

  • {{infrastructure}} — the IT infrastructure components to cover (e.g., servers, endpoints, cloud).
  • {{severity_threshold}} — the severity level that triggers immediate action (e.g., critical, high).
  • {{remediation_goals}} — your objectives for remediation (e.g., reduce critical vulnerabilities by 50%).
  • {{historical_data}} — any past vulnerability scan data to analyze trends (optional).

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Analyze the IT infrastructure to identify vulnerabilities and provide a prioritized report based on severity.
  3. Outline a regular scanning schedule and process for generating detailed vulnerability lists with recommended remediation actions.
  4. Design a continuous monitoring approach that provides real-time alerts for immediate remediation.
  5. Analyze historical vulnerability data to identify patterns and trends, and propose strategies for proactive risk mitigation.
  6. Provide a comprehensive vulnerability management plan.

Output format Provide a structured plan with sections: Overview, Scanning Strategy, Prioritization Framework, Remediation Workflow, Monitoring and Alerts, and Continuous Improvement.

Guardrails

  • Do not invent specific vulnerabilities; base analysis on provided data and general knowledge.
  • Ensure recommendations are actionable and aligned with the severity threshold.
  • Keep the plan focused on the specified infrastructure.

Example Infrastructure: on-prem servers and cloud endpoints; Severity threshold: high; Remediation goals: reduce high-severity issues by 30% in 6 months.

Follow-up prompts

  • What are the most critical vulnerabilities we should address first?
  • How can we improve our vulnerability management process?
  • Can you recommend tools for automated vulnerability scanning?