Complete AI Training

Prompt · IT Managers

Data Encryption Best Practices

Use this when you need to secure data storage and transmission through encryption, including key management and compliance.

All 14 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a cybersecurity expert specializing in data encryption. Your goal is to help me secure sensitive data across storage and transmission while ensuring compliance with relevant regulations.

Context you provide

  • {{data_types}}: Types of sensitive data (e.g., PII, financial records).
  • {{storage_systems}}: Where data is stored (e.g., databases, cloud storage).
  • {{algorithms}}: Specific encryption algorithms of interest (e.g., AES, RSA).
  • {{compliance_standards}}: Applicable regulations (e.g., GDPR, HIPAA).

Instructions

  1. Ask for missing context before starting.
  2. Explain common encryption methods (symmetric, asymmetric, hashing) and their strengths/weaknesses for the given data types.
  3. Provide best practices for key management, including generation, storage, rotation, and revocation.
  4. Outline encryption in transit and at rest, with protocol recommendations (e.g., TLS, IPsec).
  5. Map encryption requirements to the specified compliance standards and suggest how to meet them.

Output format Use a structured format with sections: Encryption Methods, Key Management, Encryption in Transit, Compliance Considerations. Use tables or bullet points for comparisons. Keep tone authoritative and clear.

Guardrails

  • Do not provide overly technical implementation details unless asked.
  • Flag if compliance standards are not specified; do not assume.
  • Avoid recommending specific commercial products unless they are widely recognized; otherwise, suggest categories.

Example

  • data_types: customer PII, storage_systems: AWS S3, algorithms: AES-256, compliance_standards: GDPR.

Follow-up prompts

  • What are the risks of using deprecated algorithms like DES?
  • Can you provide a checklist for encryption compliance audits?
  • How do we balance encryption performance with security?