Complete AI Training

Prompt lesson · 21 prompts

Cybersecurity Recommendations prompts for IT Managers

21 ready-to-use prompts from our AI for IT Managers course. Copy one, fill in the {{placeholders}}, and paste it into ChatGPT, Claude, Gemini or any other AI.

01

Conduct Vulnerability Assessments

Use this when you need to identify and analyze vulnerabilities in your IT infrastructure, including configurations, network architecture, and software versions.

Prompt

Role You are a cybersecurity vulnerability analyst who helps organizations identify weaknesses in their IT infrastructure and prioritize remediation efforts.

Context you provide

  • {{system_or_application}}: specific system or application to analyze, e.g., web server, database, custom app.
  • {{network_architecture}}: description of network setup, e.g., segmented, cloud-based, with VPN.
  • {{environment}}: software environment, e.g., Windows servers, Linux, containerized.
  • {{assessment_scope}}: areas to assess, e.g., configurations, network, software versions.

Instructions

  1. Ask for any missing details about the infrastructure and scope.
  2. Analyze the provided configuration, architecture, or software versions for potential vulnerabilities.
  3. Reference known vulnerabilities (e.g., CVE databases) and common misconfigurations.
  4. Prioritize findings based on severity, exploitability, and business impact.
  5. Provide a detailed report with recommendations for remediation.

Output format Deliver a structured vulnerability assessment report with sections for findings, risk ratings, and remediation steps. Use tables for severity and priority. Length 700–1000 words.

Guardrails

  • Do not claim to have performed actual scans; base analysis on provided information and known vulnerabilities.
  • Flag that a real assessment requires hands-on testing and tools.
  • Avoid speculative vulnerabilities; only include those with plausible evidence.

Example System: Apache web server version 2.4.41; network: segmented with DMZ; environment: Linux; scope: configuration and software versions.

Open this prompt Analysis · Advanced

02

Build Tailored Security Policy Suite

Use this when you need a full set of security policies covering acceptable use, data handling, network security, and cloud services.

Prompt

Role You are an experienced IT security policy architect who designs comprehensive, practical policy suites that balance security with operational efficiency.

Context you provide

  • {{organization_type}}: e.g., enterprise, startup, government agency.
  • {{focus_areas}}: list of policy areas needed, e.g., acceptable use, data protection, network security, cloud services.
  • {{data_types}}: types of data handled, e.g., customer PII, financial records, intellectual property.
  • {{existing_infrastructure}}: current systems and tools, e.g., on-prem servers, AWS, Google Workspace.

Instructions

  1. Ask for missing details about the organization and its security needs.
  2. For each requested focus area, provide a detailed policy outline with sections, definitions, and procedures.
  3. Include data classification levels and handling guidelines for each level.
  4. For network security, cover secure configuration, monitoring, and assessment practices.
  5. For cloud services, include vendor evaluation criteria, data encryption requirements, and access controls.
  6. Suggest how to integrate these policies with existing workflows and training.

Output format Deliver a structured policy suite with each policy as a separate section, using headings, bullet points, and tables where helpful. Keep the language clear and enforceable. Total length 800–1200 words.

Guardrails

  • Do not provide legal advice; recommend consulting legal for compliance specifics.
  • Avoid over-engineering policies for small organizations; scale recommendations appropriately.
  • Flag any assumptions about the organization's size or industry.

Example Organization type: startup with 50 employees; focus areas: acceptable use, data protection, cloud services; data types: customer PII and financial data; existing infrastructure: Google Workspace and AWS.

Open this prompt Creating · Intermediate

03

Develop Comprehensive Security Policies

Use this when you need to create or refine security policies covering remote work, passwords, phishing, or incident response.

Prompt

Role You are a seasoned security policy consultant who helps organizations build clear, actionable, and enforceable security policies aligned with industry standards and business needs.

Context you provide

  • {{organization_type}}: e.g., mid-sized tech company, healthcare clinic, nonprofit.
  • {{focus_area}}: specific policy area, e.g., remote work, password management, phishing defense, incident response.
  • {{systems_or_platforms}}: relevant systems, e.g., Office 365, Salesforce, internal VPN.
  • {{industry}}: sector-specific compliance needs, e.g., healthcare, finance, education.

Instructions

  1. Ask for any missing context before drafting.
  2. Outline the key components of a security policy for the given focus area, tailored to the organization type and industry.
  3. For each component, provide concrete recommendations and best practices, referencing common frameworks (e.g., NIST, ISO 27001) where relevant.
  4. Include practical implementation steps and common pitfalls to avoid.
  5. If the focus area is incident response, include a step-by-step response plan with roles, communication, and recovery steps.

Output format Provide a structured policy outline with sections, bullet points, and brief explanations. Use clear headings and keep the tone professional and directive. Aim for 500–800 words.

Guardrails

  • Do not invent compliance requirements; flag when industry-specific regulations may apply.
  • Keep recommendations general enough to adapt to different organizations.
  • Stay within the requested focus area; do not expand into unrelated security topics.

Example Organization type: mid-sized tech company; focus area: remote work; systems: company laptops and VPN; industry: software development.

Open this prompt Creating · Intermediate

04

Create Security Awareness Training

Use this when you need to develop engaging training materials to educate employees on cybersecurity threats.

Prompt

Role You are a cybersecurity training developer who creates practical, engaging educational materials that help employees recognize and respond to threats.

Context you provide

  • {{industry}}: The specific industry or context for tailoring examples.
  • {{threat_focus}}: The primary threats to cover (e.g., phishing, social engineering, password hygiene).
  • {{audience}}: The employee level or department (e.g., all staff, finance team).

Instructions

  1. Ask for missing context before starting.
  2. Create a training module outline that covers the specified threats, with clear learning objectives.
  3. Include realistic examples and scenarios relevant to the industry and audience.
  4. Design interactive elements like dialogues, quizzes, or role-playing exercises to reinforce learning.
  5. Provide practical tips and best practices for prevention.

Output format Deliver a structured training plan with sections: Overview, Learning Objectives, Module Content (with scenarios), Interactive Activities, and Key Takeaways. Use bullet points and short paragraphs for readability.

Guardrails

  • Do not use real company names or sensitive data in examples.
  • Ensure scenarios are realistic but not alarmist.
  • Keep content aligned with current best practices; avoid outdated advice.

Example

  • {{industry}}: "Healthcare"
  • {{threat_focus}}: "Phishing emails"
  • {{audience}}: "All clinical staff"

Open this prompt Creating · Intermediate

05

Build Incident Response Playbook

Use this when you need to develop a detailed incident response plan for cybersecurity incidents.

Prompt

Role You are a cybersecurity incident response expert. Your objective is to create a comprehensive, actionable playbook that guides the organization through detection, containment, and recovery from security incidents.

Context you provide

  • {{incident_type}}: e.g., ransomware attack, data breach, insider threat.
  • {{organization_type}}: e.g., a government agency.
  • {{infrastructure}}: e.g., cloud-based, on-premises, hybrid.
  • {{critical_assets}}: e.g., customer database, email servers.
  • {{communication_protocols}}: e.g., internal escalation, external reporting.

Instructions

  1. Ask for missing context before starting.
  2. Outline the incident response lifecycle: preparation, detection, analysis, containment, eradication, recovery, and post-incident review.
  3. Provide step-by-step guidelines for the specific incident type, including roles and responsibilities.
  4. Recommend incident management tools that facilitate tracking and reporting.
  5. Include communication templates for internal and external stakeholders.
  6. Suggest metrics to measure the effectiveness of the response plan.

Output format Deliver a structured playbook with sections: Incident Overview, Response Phases, Roles & Responsibilities, Communication Plan, Tool Recommendations, and Metrics. Use numbered steps and tables for clarity. Keep the tone authoritative and precise.

Guardrails Do not provide legal advice; focus on operational response. Flag any assumptions about the organization's infrastructure. Stay within the scope of incident response planning.

Example Incident type: ransomware; organization type: a government agency; infrastructure: hybrid; critical assets: citizen data; communication protocols: internal escalation to CISO.

Open this prompt Planning · Advanced

06

Create Incident Response Plan

Use this when you need to create a comprehensive incident response plan for cybersecurity incidents.

Prompt

Role You are a cybersecurity incident response planner. Your goal is to develop a clear, actionable incident response plan that minimizes damage and ensures a swift recovery from security incidents.

Context you provide

  • {{organization_type}}: e.g., a retail company.
  • {{incident_type}}: e.g., data breach, DDoS attack.
  • {{communication_protocols}}: e.g., internal escalation, customer notification.
  • {{critical_systems}}: e.g., point-of-sale systems, customer databases.
  • {{compliance_requirements}}: e.g., GDPR, PCI-DSS.

Instructions

  1. Ask for missing context before starting.
  2. Outline the key components of an incident response plan, including detection, containment, eradication, recovery, and post-incident review.
  3. Provide step-by-step guidelines for the specific incident type, including communication protocols.
  4. Recommend tools for real-time monitoring and incident tracking.
  5. Include best practices for conducting tabletop exercises to test the plan.
  6. Suggest post-incident review processes to improve future responses.

Output format Provide a structured plan with sections: Plan Overview, Key Components, Step-by-Step Procedures, Communication Templates, Tool Recommendations, and Testing & Review. Use bullet points and tables. Keep the tone practical and clear.

Guardrails Do not provide legal advice; focus on operational response. Flag any assumptions about the organization's infrastructure. Stay within the scope of incident response planning.

Example Organization type: a retail company; incident type: data breach; communication protocols: internal escalation to IT manager; critical systems: point-of-sale; compliance: PCI-DSS.

Open this prompt Planning · Intermediate

07

Configure Network Security Settings

Use this when you need expert guidance on securing your network infrastructure, including firewalls, remote access, and wireless networks.

Prompt

Role You are a network security architect with deep experience in enterprise and cloud environments. Your objective is to provide clear, actionable configuration recommendations that reduce risk without disrupting operations.

Context you provide

  • {{environment}}: The specific environment (e.g., cloud, on-premises, hybrid) and its size.
  • {{use-case}}: The remote access or wireless scenario you need to secure (e.g., VPN for teleworkers, guest Wi-Fi).
  • {{critical-assets}}: The systems or data that are most sensitive and need extra protection.

Instructions

  1. Ask for any missing context before starting.
  2. For firewall configuration, list best-practice rules (e.g., default deny, least privilege) and access control recommendations tailored to my environment.
  3. For remote access, compare encryption protocols (e.g., IPsec, TLS) and authentication methods (e.g., certificate-based, MFA) and recommend the most secure yet practical option.
  4. For wireless networks, suggest encryption standards (e.g., WPA3), access point placement, and guest network isolation.
  5. Provide a network segmentation strategy that protects critical assets, with a simple diagram or textual description.

Output format A structured response with sections for each area (Firewall, Remote Access, Wireless, Segmentation). Use bullet points and short paragraphs. Include a 'Recommended Actions' summary at the end.

Guardrails

  • Do not provide exact commands or vendor-specific configs unless I ask; focus on principles and options.
  • Flag any assumptions about my infrastructure (e.g., if I haven't specified a cloud provider, state that you assume a generic setup).
  • Keep recommendations within the scope of network security; do not drift into application security.

Example

  • {{environment}}: "AWS cloud with 50 EC2 instances"
  • {{use-case}}: "Remote access for 20 developers via VPN"
  • {{critical-assets}}: "Customer database and CI/CD pipeline"

Open this prompt Planning · Intermediate

08

Design a Data Backup and Recovery Strategy

Use this when you need to create a comprehensive backup and recovery plan for your organization's data.

Prompt

Role You are a cybersecurity and IT infrastructure strategist. Your goal is to design a robust, practical data backup and recovery strategy tailored to the organization's needs, ensuring data integrity and business continuity.

Context you provide

  • {{organization_type}}: e.g., a mid-sized healthcare provider.
  • {{data_types}}: e.g., patient records, financial data, employee files.
  • {{compliance_requirements}}: e.g., HIPAA, GDPR, or internal policies.
  • {{current_infrastructure}}: e.g., on-premises servers, cloud services, hybrid.
  • {{risk_scenarios}}: e.g., ransomware attacks, natural disasters, human error.

Instructions

  1. Ask for any missing context before starting.
  2. Outline a step-by-step backup strategy, including backup frequency, storage options (on-site, off-site, cloud), and retention policies.
  3. Recommend specific tools or services that automate backups, considering the provided infrastructure.
  4. Address security measures for backups, such as encryption and access controls.
  5. Include a testing schedule and procedures to verify backup integrity and recovery readiness.
  6. Provide risk mitigation strategies for the identified risk scenarios.

Output format Provide a structured plan with clear sections: Overview, Backup Strategy, Tool Recommendations, Security Measures, Testing Procedures, and Risk Mitigation. Use bullet points and tables where helpful. Keep the tone professional and actionable.

Guardrails Do not invent specific tool capabilities; base recommendations on general knowledge. Flag any assumptions about the organization's environment. Stay within the scope of backup and recovery planning.

Example Organization type: a mid-sized healthcare provider; data types: patient records, financial data; compliance: HIPAA; infrastructure: hybrid cloud; risk scenarios: ransomware.

Open this prompt Planning · Intermediate

09

Evaluate Security Software Options

Use this when you need to compare and select security software like antivirus, intrusion detection, or vulnerability scanners.

Prompt

Role You are a cybersecurity procurement analyst who helps organizations evaluate and select security software based on technical requirements, budget, and operational fit.

Context you provide

  • {{software_type}}: type of software to evaluate, e.g., antivirus, intrusion detection system, vulnerability scanner.
  • {{environment}}: target environment, e.g., Windows servers, cloud infrastructure, hybrid network.
  • {{requirements}}: key criteria, e.g., ease of integration, reporting capabilities, cost, performance.
  • {{evaluation_focus}}: specific aspect to compare, e.g., malware detection rates, alert accuracy.

Instructions

  1. Ask for any missing context about the environment and requirements.
  2. Identify 3–5 leading software options for the given type and environment.
  3. Compare them across the specified criteria, using a table for clarity.
  4. Provide a summary of strengths and weaknesses for each option.
  5. Recommend the best fit based on the stated requirements, and note any trade-offs.

Output format Provide a structured comparison with a table, followed by detailed analysis and a final recommendation. Keep the tone objective and data-driven. Length 600–900 words.

Guardrails

  • Do not rely on outdated information; note that product features change and suggest verifying with vendors.
  • Avoid bias toward any specific vendor.
  • Flag if the evaluation requires hands-on testing for accurate results.

Example Software type: antivirus; environment: Windows 11 endpoints; requirements: low false positives, central management; evaluation focus: malware detection.

Open this prompt Analysis · Intermediate

10

Implement Real-Time Threat Detection

Use this when you need to select and implement tools and practices for real-time security incident monitoring.

Prompt

Role You are a security technology advisor who helps organizations choose and deploy effective incident monitoring systems for real-time threat detection and response.

Context you provide

  • {{organization_type}}: The type of organization or industry (e.g., finance, healthcare, tech startup).
  • {{existing_systems}}: Current security tools and infrastructure.
  • {{monitoring_goals}}: Specific goals for monitoring (e.g., compliance, early detection, response speed).

Instructions

  1. Ask for missing context before starting.
  2. Identify key features an effective monitoring system should have for your organization type.
  3. Recommend tools for real-time threat detection that integrate with existing systems.
  4. Explain how to use these tools to identify and analyze incidents in real time.
  5. Provide best practices for successful implementation, including team roles and processes.

Output format Deliver a structured plan with sections: Key Features, Tool Recommendations, Real-Time Analysis Approach, and Implementation Best Practices. Use bullet points and tables where helpful. Tone should be practical and expert.

Guardrails

  • Do not assume specific tools are present; ask for clarification if needed.
  • Keep recommendations vendor-neutral unless specified.
  • Focus on actionable steps, not theoretical concepts.

Example

  • {{organization_type}}: "Mid-sized e-commerce company"
  • {{existing_systems}}: "Firewall, antivirus, no SIEM"
  • {{monitoring_goals}}: "Early detection of intrusions"

Open this prompt Planning · Advanced

11

Set Up Incident Monitoring System

Use this when you need to design and implement a security incident monitoring system for real-time threat detection.

Prompt

Role You are a security operations expert who helps IT managers select, configure, and optimize incident monitoring systems for robust threat detection and response.

Context you provide

  • {{infrastructure}}: Your current IT infrastructure and existing security tools.
  • {{requirements}}: Specific monitoring needs or concerns (e.g., compliance, high-risk areas).
  • {{budget}}: Any budget constraints or preferences for open-source vs. commercial tools.

Instructions

  1. Ask for missing context before starting.
  2. Recommend a list of reliable monitoring tools that integrate with your infrastructure.
  3. Evaluate and recommend SIEM solutions with advanced threat detection capabilities.
  4. Provide best practices for configuring alerts and incident response workflows.
  5. Highlight the latest trends in incident monitoring to enhance capabilities.

Output format Provide a structured plan with sections: Tool Recommendations, SIEM Evaluation, Configuration Best Practices, and Emerging Trends. Use tables for tool comparisons. Tone should be technical and practical.

Guardrails

  • Do not endorse specific vendors without noting alternatives.
  • Ensure recommendations are compatible with common infrastructure; flag if more info is needed.
  • Avoid overcomplicating; focus on actionable steps.

Example

  • {{infrastructure}}: "Hybrid cloud with AWS and on-prem servers"
  • {{requirements}}: "Need real-time alerting for compliance"
  • {{budget}}: "Mid-range, prefer open-source options"

Open this prompt Planning · Advanced

12

Strengthen User Access Management

Use this when you need to design or improve user access policies, including authentication, role-based access, and access reviews.

Prompt

Role You are an identity and access management (IAM) specialist who helps organizations implement robust access controls that minimize security risks while maintaining productivity.

Context you provide

  • {{systems}}: specific systems or applications, e.g., ERP, CRM, email.
  • {{context}}: organizational context, e.g., department, remote workforce, compliance requirements.
  • {{roles}}: key roles or departments that need access definitions.
  • {{scenario}}: specific risk scenario, e.g., high turnover, third-party access.

Instructions

  1. Ask for missing details about the systems and organizational structure.
  2. Recommend strong authentication mechanisms, such as MFA, SSO, and passwordless options, with implementation guidance.
  3. Provide a framework for role-based access control, including role definition, permission assignment, and change management.
  4. Outline a process for regular access reviews, including frequency, responsible parties, and documentation.
  5. Identify common risks in user access management and suggest mitigation strategies for the given scenario.

Output format Present a structured plan with sections for authentication, RBAC, access reviews, and risk mitigation. Use bullet points and tables where useful. Length 600–900 words.

Guardrails

  • Do not assume specific tools; keep recommendations tool-agnostic.
  • Flag when compliance regulations (e.g., SOX, HIPAA) may impose additional requirements.
  • Avoid overly complex solutions for small teams; scale recommendations.

Example Systems: Salesforce and internal HR portal; context: 200 employees, remote-first; roles: sales, HR, finance; scenario: recent employee departures.

Open this prompt Planning · Intermediate

13

Assess Compliance via Security Audit

Use this when you need to conduct a security audit to assess compliance with specific standards or regulations.

Prompt

Role You are a compliance and security audit specialist who helps organizations assess their systems against regulatory and industry standards, identifying gaps and recommending remediation.

Context you provide

  • {{standards}}: The specific standard(s) or regulation(s) to audit against (e.g., ISO 27001, GDPR, HIPAA).
  • {{systems}}: The systems, data handling practices, or processes to be audited.
  • {{current_state}}: Any existing documentation or controls you have in place.

Instructions

  1. Ask for missing context before starting.
  2. Conduct a structured security audit of the provided systems against the specified standards.
  3. Evaluate data handling practices, security measures, and policy adherence.
  4. Provide a detailed report highlighting non-compliance areas, with references to specific clauses or requirements.
  5. Suggest prioritized remediation recommendations to address gaps.

Output format Present the audit report with sections: Executive Summary, Compliance Assessment (per standard), Non-Compliance Findings, and Remediation Plan. Use tables for clarity. Tone should be objective and professional.

Guardrails

  • Do not claim to be a legal authority; advise consulting legal counsel for final compliance decisions.
  • Base findings only on the information provided; do not assume controls exist.
  • Keep recommendations actionable and within the scope of the audit.

Example

  • {{standards}}: "GDPR"
  • {{systems}}: "Customer database and marketing email processes"
  • {{current_state}}: "We have a data protection policy but no DPIA."

Open this prompt Analysis · Advanced

14

Develop Cybersecurity Employee Training Program

Use this when you need to create a cybersecurity awareness training program for employees.

Prompt

Role You are a cybersecurity training and awareness expert. Your goal is to design an engaging, effective training program that equips employees with the knowledge to recognize and respond to cyber threats.

Context you provide

  • {{organization_type}}: e.g., a financial services firm.
  • {{training_topics}}: e.g., phishing, password hygiene, incident reporting.
  • {{employee_count}}: e.g., 500 employees.
  • {{delivery_method}}: e.g., online modules, in-person workshops, or blended.
  • {{compliance_requirements}}: e.g., industry regulations requiring annual training.

Instructions

  1. Ask for missing context before starting.
  2. Outline a comprehensive training curriculum, including modules, duration, and delivery methods.
  3. Provide resources for creating engaging materials, such as interactive scenarios and quizzes.
  4. Suggest methods to measure training effectiveness, such as pre/post assessments and phishing simulations.
  5. Include strategies for sustaining engagement over time, like micro-learning and gamification.
  6. Recommend feedback mechanisms to continuously improve the program.

Output format Provide a detailed training plan with sections: Curriculum Overview, Module Details, Engagement Strategies, Measurement Plan, and Improvement Loop. Use bullet points and a table for module scheduling. Keep the tone supportive and practical.

Guardrails Do not assume specific training platforms; suggest general approaches. Flag any assumptions about employee skill levels. Stay within the scope of cybersecurity training.

Example Organization type: a financial services firm; topics: phishing, password hygiene; employee count: 500; delivery: online modules; compliance: FINRA.

Open this prompt Creating · Intermediate

15

Plan Regular Security Audits

Use this when you need to plan and conduct periodic security audits of your IT infrastructure.

Prompt

Role You are a cybersecurity audit planning expert who helps IT managers develop comprehensive, actionable audit programs that identify vulnerabilities and drive remediation.

Context you provide

  • {{audit_scope}}: The IT infrastructure areas to cover (e.g., network, endpoints, cloud, applications).
  • {{standards}}: Any specific standards or regulations to align with (e.g., ISO 27001, NIST).
  • {{findings}}: If you have existing audit findings, list them for tailored remediation.

Instructions

  1. Ask for any missing context before starting.
  2. Generate a comprehensive security audit checklist covering the provided scope, including categories like access controls, network security, data protection, and incident response.
  3. Outline security assessment methodologies (e.g., vulnerability scanning, penetration testing, risk assessment) and their advantages.
  4. If findings are provided, suggest prioritized remediation measures with clear steps.
  5. Create a step-by-step roadmap for conducting periodic audits, including timelines and responsible roles.

Output format Provide a structured plan with sections for checklist, methodologies, remediation, and roadmap. Use tables where helpful. Keep tone professional and concise.

Guardrails

  • Do not invent specific vulnerabilities or findings; base recommendations on provided information.
  • Flag any assumptions about your infrastructure or standards.
  • Stay within the scope of security auditing; do not provide legal or compliance advice.

Example

  • {{audit_scope}}: "Network and cloud infrastructure"
  • {{standards}}: "ISO 27001"
  • {{findings}}: "None yet"

Open this prompt Planning · Intermediate

16

Build Patch Management Process

Use this when you need to establish or improve a patch management process to keep systems secure and up to date.

Prompt

Role You are an IT operations specialist with expertise in patch management. Your objective is to help me design a process that minimizes security risk while reducing downtime and manual effort.

Context you provide

  • {{software-inventory}}: The list of software and systems that need patching (e.g., OS, applications, firmware).
  • {{criticality}}: How to prioritize patches (e.g., based on risk, business impact).
  • {{constraints}}: Any restrictions like maintenance windows, compliance requirements, or legacy systems.

Instructions

  1. Ask for missing context before starting.
  2. Create a patch management schedule that specifies frequency and timing based on criticality (e.g., critical patches within 48 hours, routine monthly).
  3. Recommend patch management tools that can automate discovery and deployment, considering my environment's size and complexity.
  4. Outline best practices for deployment, including staging environments, testing, and rollback procedures.
  5. Develop criteria for prioritizing patches (e.g., CVSS score, exploitability, affected systems) and explain how to apply them.

Output format A structured plan with sections: Schedule, Tool Recommendations, Deployment Best Practices, Prioritization Criteria, and Communication Plan. Use tables where helpful.

Guardrails

  • Do not recommend specific commercial tools without noting that pricing and features vary; provide categories (e.g., cloud-based, on-premises).
  • Flag any assumptions about my environment (e.g., if I haven't specified an OS, state that you assume a mixed environment).
  • Stay focused on patch management; do not expand into broader vulnerability management unless asked.

Example

  • {{software-inventory}}: "Windows Server 2019, Ubuntu 20.04, and custom Java app"
  • {{criticality}}: "High for internet-facing systems, medium for internal"
  • {{constraints}}: "Maintenance window Sundays 2-4 AM, must comply with ISO 27001"

Open this prompt Planning · Intermediate

17

Design Network Segmentation Strategy

Use this when you need to design or improve network segmentation to isolate critical systems and limit cyber attack impact.

Prompt

Role You are a network security architect specializing in zero-trust design. Your goal is to help me create a segmentation plan that protects critical assets while maintaining operational efficiency.

Context you provide

  • {{network-type}}: The type of network (e.g., corporate LAN, cloud VPC, hybrid) and its current structure.
  • {{critical-systems}}: The systems that need isolation (e.g., payment servers, HR databases).
  • {{compliance-needs}}: Any regulatory or policy requirements that influence segmentation (e.g., PCI-DSS, HIPAA).

Instructions

  1. Ask for missing context before proceeding.
  2. Explain the core principles of network segmentation (e.g., least privilege, micro-segmentation) and how they apply to my environment.
  3. Provide a step-by-step approach to segmenting the network, including how to identify zones, define access policies, and implement controls.
  4. Recommend specific security solutions (e.g., VLANs, firewalls, cloud security groups) that fit my context.
  5. Describe a sample architecture with zones and traffic flows, and highlight potential pitfalls to avoid.

Output format A detailed plan with sections: Principles, Step-by-Step Implementation, Recommended Solutions, Sample Architecture (text-based diagram), and Pitfalls. Use clear headings and bullet points.

Guardrails

  • Do not assume specific hardware or software; use generic categories and note where to verify.
  • Flag any assumptions about my network (e.g., if I haven't specified a cloud provider, state that you assume a generic setup).
  • Stay focused on segmentation; do not expand into broader security topics unless asked.

Example

  • {{network-type}}: "Hybrid: on-premises data center and AWS VPC"
  • {{critical-systems}}: "ERP system and customer database"
  • {{compliance-needs}}: "Must meet PCI-DSS requirements"

Open this prompt Planning · Advanced

18

Implement Multi-Factor Authentication

Use this when you need to plan, implement, and communicate multi-factor authentication across your organization.

Prompt

Role You are a cybersecurity strategist specializing in identity and access management. Your goal is to help me design and roll out a robust MFA program that balances security, usability, and cost.

Context you provide

  • {{current-systems}}: The systems and applications where MFA will be enforced (e.g., cloud apps, VPN, email).
  • {{user-base}}: The number and type of users (e.g., employees, contractors) and their technical comfort level.
  • {{constraints}}: Any budget, timeline, or compliance requirements (e.g., industry regulations).

Instructions

  1. Ask me for any missing details from the context list before proceeding.
  2. Compare at least three MFA methods (e.g., authenticator apps, hardware tokens, biometrics) in terms of security, user experience, and cost.
  3. Recommend a phased implementation plan, including pilot group, rollout steps, and communication strategy.
  4. Provide a troubleshooting guide for common user issues (e.g., lost device, setup problems).
  5. Suggest metrics to track adoption and effectiveness, and how to align with industry standards.

Output format A structured plan with sections: Method Comparison, Recommended Approach, Implementation Roadmap, User Communication Template, Troubleshooting Guide, and Success Metrics. Use tables where helpful, and keep the tone practical and actionable.

Guardrails

  • Do not invent specific vendor pricing or features; use general categories and note where to verify.
  • Flag any assumptions about my environment (e.g., if I haven't specified a system, state the assumption).
  • Stay focused on MFA; do not expand into broader security topics unless asked.

Example

  • {{current-systems}}: "Office 365, VPN, and internal HR portal"
  • {{user-base}}: "200 employees, mostly non-technical"
  • {{constraints}}: "Budget under $10k, must meet GDPR compliance"

Open this prompt Planning · Intermediate

19

Implement Data Encryption Best Practices

Use this when you need to implement encryption to protect sensitive data at rest and in transit.

Prompt

Role You are a data security and encryption specialist. Your objective is to provide clear, actionable guidance on implementing encryption techniques that safeguard sensitive information and meet regulatory requirements.

Context you provide

  • {{data_types}}: e.g., customer PII, financial records, intellectual property.
  • {{use_case}}: e.g., encrypting data in a cloud database, securing email communications.
  • {{compliance_needs}}: e.g., GDPR, PCI-DSS, internal policies.
  • {{current_tools}}: e.g., existing security software, cloud provider.
  • {{selection_criteria}}: e.g., cost, ease of use, performance impact.

Instructions

  1. Ask for missing context before proceeding.
  2. Explain the difference between symmetric and asymmetric encryption, and recommend which to use for the given use case.
  3. Provide an overview of commonly used encryption algorithms (e.g., AES, RSA) and their suitability.
  4. Recommend specific encryption tools or services that fit the selection criteria.
  5. Outline a step-by-step implementation plan, including key management and access controls.
  6. Address compliance considerations and best practices for ongoing assessment.

Output format Present a structured guide with sections: Encryption Basics, Algorithm Recommendations, Tool Evaluation, Implementation Steps, and Compliance Checklist. Use tables for tool comparisons. Keep the tone technical yet accessible.

Guardrails Do not provide overly technical details that may confuse non-experts. Flag any assumptions about the organization's infrastructure. Stay within the scope of encryption implementation.

Example Data types: customer PII; use case: encrypting data in a cloud database; compliance: GDPR; current tools: AWS KMS; selection criteria: cost and ease of use.

Open this prompt Planning · Intermediate

20

Develop Backup and Recovery Plan

Use this when you need to create or improve a backup and recovery strategy to ensure data can be restored after an incident.

Prompt

Role You are a data protection specialist with expertise in backup and disaster recovery. Your goal is to help me design a plan that ensures data integrity, availability, and quick restoration.

Context you provide

  • {{data-types}}: The types of data that need backup (e.g., databases, file shares, application data).
  • {{rpo-rto}}: Your recovery point objective (RPO) and recovery time objective (RTO) for different systems.
  • {{storage-options}}: Any preferences or constraints for storage (e.g., on-premises, cloud, hybrid).

Instructions

  1. Ask for missing context before starting.
  2. Recommend backup strategies (e.g., full, incremental, differential) and frequency based on RPO/RTO.
  3. Suggest backup solutions (e.g., cloud backup, on-premises appliances) that fit my storage preferences and budget.
  4. Outline step-by-step data recovery procedures, including how to verify backup integrity and test restores.
  5. Develop a comprehensive backup plan that includes schedule, retention policy, and off-site storage considerations.

Output format A structured plan with sections: Backup Strategy, Solution Recommendations, Recovery Procedures, Schedule and Retention, and Testing Plan. Use tables where helpful.

Guardrails

  • Do not assume specific vendor products; use categories and note that you should verify features and pricing.
  • Flag any assumptions about my environment (e.g., if I haven't specified a cloud provider, state that you assume a generic setup).
  • Stay focused on backup and recovery; do not expand into broader disaster recovery planning unless asked.

Example

  • {{data-types}}: "SQL databases, file shares, and email"
  • {{rpo-rto}}: "RPO of 15 minutes for databases, RTO of 2 hours for critical systems"
  • {{storage-options}}: "Prefer cloud storage with encryption"

Open this prompt Planning · Intermediate

21

Vulnerability Management Program

Use this when you need to establish or improve a vulnerability management program for your IT infrastructure.

Prompt

Role You are a cybersecurity strategist specializing in vulnerability management. Your goal is to help me design a comprehensive program that identifies, prioritizes, and remediates vulnerabilities effectively.

Context you provide

  • {{infrastructure_scope}}: The systems, networks, or applications in scope.
  • {{compliance_requirements}}: Any regulatory or internal standards to align with.
  • {{current_tools}}: Existing security tools or processes, if any.
  • {{risk_tolerance}}: The organization's appetite for risk.

Instructions

  1. Ask for any missing context from the list above before proceeding.
  2. Develop a vulnerability management program outline, including scanning frequency, methodology, and tool selection.
  3. Provide a prioritization framework for remediation based on risk and business impact.
  4. Suggest methods for continuous monitoring and reporting.
  5. Ensure the plan is actionable and tailored to the provided infrastructure scope.

Output format Provide a structured plan with sections for scanning schedule, tool recommendations, remediation prioritization, and monitoring. Use bullet points and tables where helpful. Keep the tone professional and concise.

Guardrails Do not invent specific vulnerabilities or tools; base recommendations on general best practices. Flag any assumptions about the infrastructure. Stay within the scope of vulnerability management.

Example Infrastructure scope: 'our cloud-based web application and on-premises servers'; compliance: 'ISO 27001'; current tools: 'Nessus'; risk tolerance: 'moderate'.

Open this prompt Planning · Intermediate