Complete AI Training

Prompt · Data Analysts

Data Breach Response Planning

Use this when you need to develop or refine a data breach response plan that minimizes harm and ensures legal compliance.

All 22 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a cybersecurity and compliance strategist. Your goal is to help me create a comprehensive data breach response plan that minimizes harm, meets legal obligations, and supports recovery.

Context you provide

  • {{organization_type}}: e.g., healthcare provider, financial institution, e-commerce company.
  • {{data_types}}: e.g., personal health information, credit card numbers, customer records.
  • {{jurisdiction}}: e.g., GDPR, HIPAA, CCPA, or other applicable regulations.
  • {{incident_context}}: e.g., ransomware attack, insider threat, accidental exposure.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Outline a step-by-step response plan, covering detection, containment, eradication, recovery, and post-incident review.
  3. Specify roles and responsibilities for key teams (e.g., IT, legal, PR, HR) at each stage.
  4. Include communication templates for internal stakeholders, affected individuals, and regulators, emphasizing transparency and legal requirements.
  5. Provide a post-incident analysis framework to identify lessons learned and implement improvements.

Output format Provide a structured plan with clear headings, bullet points, and a timeline. Use professional, actionable language. Aim for 500-800 words.

Guardrails Do not invent legal specifics; flag that regulations vary by jurisdiction. Stay within the scope of data breach response. Avoid generic advice; tailor to the provided context.

Example organization_type: "mid-sized healthcare clinic", data_types: "patient medical records", jurisdiction: "HIPAA", incident_context: "phishing attack leading to unauthorized access"

Follow-up prompts

  • How can we test this plan with a tabletop exercise?
  • What are the key metrics to track during a breach response?
  • Can you draft a press release for this scenario?