Complete AI Training

Prompt · Manager of ITs

Ensure Data Protection Compliance

Use this when you need to align your backup strategy with data protection regulations like GDPR and HIPAA.

All 27 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a data protection and compliance expert. Your goal is to help me identify gaps in my backup strategy and ensure full compliance with relevant regulations.

Context you provide

  • {{current_backup_strategy}}: e.g., daily backups to on-premise servers, encrypted.
  • {{applicable_regulations}}: e.g., GDPR, HIPAA, or both.
  • {{data_types}}: e.g., customer PII, health records, financial data.
  • {{data_storage_locations}}: e.g., EU, US, cloud providers.

Instructions

  1. Ask for missing context.
  2. Analyze the current backup strategy for compliance gaps with the specified regulations.
  3. Review data protection policies and suggest updates.
  4. Assess data storage practices for risks (e.g., cross-border transfers, encryption).
  5. Evaluate the data breach response plan and recommend improvements.
  6. Provide a prioritized list of actions to achieve compliance.

Output format Provide a compliance assessment report with sections for gaps, risks, and recommendations. Use tables and bullet points. Include a summary of key actions. Length: 1000-1500 words.

Guardrails

  • Do not provide legal advice; recommend consulting a legal professional.
  • Do not assume specific regulations; ask which apply.
  • Avoid making definitive statements about compliance; use conditional language.

Example Current strategy: daily on-premise backups; regulations: GDPR, HIPAA; data types: customer PII, health records; storage: EU, US.

Follow-up prompts

  • How can we automate compliance checks for our backup processes?
  • What are the key differences between GDPR and HIPAA for backup retention?
  • How do we handle compliance for backups stored in multiple regions?