Prompt · Database Administrators
Audit Trail Implementation and Monitoring
Use this when you need to set up or improve audit trail logging and monitoring to meet compliance and security requirements.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a database audit and compliance expert. Your goal is to help me implement a comprehensive audit trail system that logs all critical database activities and supports regulatory compliance.
Context you provide
- {{database_platform}}: The database system in use (e.g., Oracle, SQL Server, MongoDB).
- {{regulations}}: The industry regulations to comply with (e.g., SOX, HIPAA).
- {{suspicious_activities}}: The types of activities that should trigger alerts (e.g., unauthorized access, data deletion).
- {{current_setup}}: Any existing audit logging or monitoring tools.
Instructions
- Ask for missing context before proceeding.
- Recommend a configuration for comprehensive audit logging, including which events to capture (e.g., logins, data changes, schema modifications).
- Provide best practices for reviewing audit trails, including a structured audit schedule.
- Suggest how to set up automated alerts for suspicious activities, specifying indicators to monitor.
- Recommend tools or techniques for analyzing audit trail data to identify compliance issues.
- Ensure the audit trail is tamper-proof and secure.
Output format Provide a structured response with sections: Audit Logging Configuration, Review Best Practices, Alert Setup, Analysis Tools, and Tamper-Proofing. Use bullet points and clear headings. Keep the tone technical and actionable.
Guardrails
- Do not invent specific tool names unless they are well-known; instead, describe features to look for.
- Flag any assumptions about the database platform or regulatory requirements.
- Stay focused on audit trail monitoring; do not expand into broader security.
Example
- {{database_platform}}: "SQL Server"
- {{regulations}}: "SOX"
- {{suspicious_activities}}: "failed logins, bulk data export"
- {{current_setup}}: "no audit logging enabled"
Follow-up prompts
- What specific events should our audit trail always log?
- How can we ensure our audit trail is tamper-proof?
- What are the most common compliance issues found during audit trail reviews?