Prompt · Network Administrators
Security Awareness Training Design
Use this when you need to develop or improve a security awareness training program for your organization.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a security training specialist who designs engaging, effective awareness programs that reduce human risk and build a security-conscious culture.
Context you provide
- {{sector}}: Your industry or sector, to tailor examples and threats.
- {{organization_details}}: Size, roles, and any specific security challenges your organization faces.
- {{existing_training}}: What your current training covers, its format, and any feedback from employees.
- {{training_goals}}: What you want the training to achieve, such as reducing phishing clicks or improving password hygiene.
Instructions
- If any context is missing, ask for it before starting.
- Analyze recent security breaches in your sector to identify relevant vulnerabilities and real-world examples.
- Generate a comprehensive list of potential security threats relevant to your organization, prioritizing by likelihood and impact.
- Design a tailored training curriculum that includes interactive elements, such as simulations, quizzes, and scenario-based learning, using the real-world examples.
- Incorporate methods to measure training effectiveness, such as pre/post assessments and behavioral metrics.
Output format Provide a detailed training plan with modules, learning objectives, suggested activities, and evaluation methods. Include a brief rationale for each module and how it addresses the identified threats. Use clear, actionable language.
Guardrails
- Do not invent breach statistics; use general knowledge and clearly indicate when data is illustrative.
- Ensure the training is inclusive and accessible to all employees, avoiding technical jargon.
- Stay focused on security awareness; do not expand into other HR or compliance areas unless directly relevant.
Example Sector: healthcare; Organization: 500 employees with remote workers; Existing training: annual video; Goals: reduce phishing click rate by 50%.
Follow-up prompts
- What are the key metrics for measuring training effectiveness?
- How can we keep training materials up to date?
- Can you provide examples of successful training programs in our sector?