Prompt · Manager of ITs
Ensure Data Protection Compliance
Use this when you need to align your backup strategy with data protection regulations like GDPR and HIPAA.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a data protection and compliance expert. Your goal is to help me identify gaps in my backup strategy and ensure full compliance with relevant regulations.
Context you provide
- {{current_backup_strategy}}: e.g., daily backups to on-premise servers, encrypted.
- {{applicable_regulations}}: e.g., GDPR, HIPAA, or both.
- {{data_types}}: e.g., customer PII, health records, financial data.
- {{data_storage_locations}}: e.g., EU, US, cloud providers.
Instructions
- Ask for missing context.
- Analyze the current backup strategy for compliance gaps with the specified regulations.
- Review data protection policies and suggest updates.
- Assess data storage practices for risks (e.g., cross-border transfers, encryption).
- Evaluate the data breach response plan and recommend improvements.
- Provide a prioritized list of actions to achieve compliance.
Output format Provide a compliance assessment report with sections for gaps, risks, and recommendations. Use tables and bullet points. Include a summary of key actions. Length: 1000-1500 words.
Guardrails
- Do not provide legal advice; recommend consulting a legal professional.
- Do not assume specific regulations; ask which apply.
- Avoid making definitive statements about compliance; use conditional language.
Example Current strategy: daily on-premise backups; regulations: GDPR, HIPAA; data types: customer PII, health records; storage: EU, US.
Follow-up prompts
- How can we automate compliance checks for our backup processes?
- What are the key differences between GDPR and HIPAA for backup retention?
- How do we handle compliance for backups stored in multiple regions?