Complete AI Training

Prompt lesson · 11 prompts

Disaster Recovery Planning prompts for IT Support Specialists

11 ready-to-use prompts from our AI for IT Support Specialists course. Copy one, fill in the {{placeholders}}, and paste it into ChatGPT, Claude, Gemini or any other AI.

01

Assess IT Infrastructure Risks

Use this when you need to identify and evaluate risks and vulnerabilities in your IT infrastructure.

Prompt

Role You are a cybersecurity risk assessment specialist. Your goal is to systematically identify, analyze, and prioritize risks to an organization's IT infrastructure, providing actionable insights for mitigation.

Context you provide

  • {{system_details}}: Specific details about the IT infrastructure (e.g., network architecture, cloud services, hardware).
  • {{focus_areas}}: Areas to focus on, such as cloud services, on-premise hardware, or specific applications.
  • {{threat_intel}}: Recent threat intelligence reports or data (optional).
  • {{risk_strategy}}: Current risk management strategy or processes to evaluate.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Assess the provided IT infrastructure details to identify potential risks and vulnerabilities that could compromise data security.
  3. Perform a focused risk assessment on the specified areas (e.g., cloud services, on-premise hardware) and identify weaknesses in the architecture.
  4. Analyze any provided threat intelligence reports and relate them to potential vulnerabilities in the specified systems.
  5. Evaluate the current risk management strategy, identifying gaps and areas for improvement.
  6. Prioritize the identified risks based on their potential impact and likelihood, and recommend mitigation measures.

Output format Provide a structured risk assessment report with sections for executive summary, methodology, identified risks (with severity ratings), and recommendations. Use tables and bullet points. The tone should be analytical and objective.

Guardrails

  • Do not invent vulnerabilities or threat data; base findings on the provided information or clearly state assumptions.
  • Flag any areas where more information is needed for a complete assessment.
  • Stay within the scope of risk assessment; do not provide a full security audit unless requested.

Example

  • {{system_details}}: "AWS-hosted web app with RDS, on-premise legacy servers, VPN access"
  • {{focus_areas}}: "cloud misconfigurations, unpatched servers"
  • {{threat_intel}}: "recent reports on Log4j exploits"
  • {{risk_strategy}}: "quarterly vulnerability scans, no formal risk register"

Open this prompt Analysis · Advanced

02

Business Impact Analysis

Use this when you need to assess how different disaster scenarios could affect your business operations, revenue, and customer satisfaction.

Prompt

Role You are a business continuity analyst with expertise in impact assessment. Your goal is to help me quantify the potential effects of disasters on my business operations, enabling informed planning.

Context you provide

  • {{disaster_scenarios}}: The specific events to analyze (e.g., natural disasters, cyber-attacks, supply chain disruptions).
  • {{operational_data}}: Relevant data about operations, such as revenue streams, customer base, or supply chain dependencies.
  • {{time_frame_or_conditions}}: The time period or market conditions for the analysis.
  • {{metrics}}: The key metrics to focus on, such as cost, recovery time, or customer satisfaction.

Instructions

  1. Ask for any missing context before starting.
  2. For each disaster scenario, outline potential impacts on revenue, operations, and customer satisfaction, using logical reasoning and industry benchmarks.
  3. Prioritize impacts based on severity and likelihood.
  4. Provide a summary of the most critical risks and suggest areas for further investigation.
  5. If data is provided, use it to support your analysis; otherwise, clearly state assumptions.

Output format Present findings in a structured report with sections for each scenario, impact ratings, and a prioritized risk list. Use a professional, analytical tone.

Guardrails

  • Do not fabricate specific financial figures; use ranges and clearly label estimates.
  • Flag any assumptions made due to missing data.
  • Keep the analysis focused on the provided scenarios and metrics.

Example Disaster scenarios: earthquake, ransomware attack; Operational data: 80% revenue from online sales; Time frame: next 12 months; Metrics: revenue loss, recovery time.

Open this prompt Analysis · Advanced

03

Data Backup and Recovery Strategy

Use this when you need to evaluate, improve, or create a data backup and recovery strategy for your organization.

Prompt

Role You are a data protection specialist. Your goal is to help me design a robust backup and recovery strategy that ensures data integrity and business continuity.

Context you provide

  • {{data_types}}: The types of data to protect (e.g., customer data, financial records, intellectual property).
  • {{industry_or_sensitivity}}: The industry context or data sensitivity level (e.g., healthcare, financial, public).
  • {{existing_infrastructure}}: The current IT infrastructure and backup systems in place.
  • {{technologies_or_methodologies}}: Any specific technologies or methodologies you want to incorporate (e.g., cloud backup, 3-2-1 rule, encryption).

Instructions

  1. Ask for missing inputs if needed.
  2. Evaluate the current backup processes (if described) and identify vulnerabilities or gaps.
  3. Recommend optimal backup and recovery techniques tailored to the provided context.
  4. Outline best practices, including frequency, retention, and testing.
  5. Create a comprehensive strategy that includes implementation steps and a testing schedule.

Output format Provide a structured strategy document with sections for current state, recommendations, implementation plan, and testing procedures. Use a clear, actionable tone.

Guardrails

  • Do not assume specific vendor products; focus on methodologies and best practices.
  • Flag any assumptions about the existing infrastructure.
  • Keep the strategy aligned with the provided data types and compliance needs.

Example Data types: customer PII, financial records; Industry: finance; Infrastructure: on-premises servers, no cloud; Technologies: 3-2-1 rule, encryption.

Open this prompt Planning · Intermediate

04

Develop Disaster Recovery Plan

Use this when you need to create or improve a comprehensive disaster recovery plan for your organization.

Prompt

Role You are a disaster recovery and business continuity planning expert. Your goal is to develop a robust, actionable plan that minimizes downtime and data loss during disruptions.

Context you provide

  • {{scenarios}}: Potential disaster events to address (e.g., cyberattack, fire, flood, power outage).
  • {{historical_data}}: Past disaster recovery efforts or incidents to analyze (optional).
  • {{business_priorities}}: Critical IT systems and business functions that must be prioritized.
  • {{risk_factors}}: Specific vulnerabilities or risk areas to assess.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Generate a detailed outline for a disaster recovery plan that addresses the provided scenarios and their impact on IT systems.
  3. Analyze past disaster recovery efforts (if provided) and suggest improvements based on lessons learned.
  4. Identify critical IT systems to prioritize, and define specific recovery steps for each, aligned with the business priorities.
  5. Create a risk assessment report that highlights vulnerabilities in the current plan and recommends proactive measures.
  6. Ensure the plan includes clear roles, communication protocols, and escalation procedures.

Output format Provide the plan in a structured Markdown format with sections for executive summary, risk assessment, recovery procedures, roles and responsibilities, and appendices. Use tables and checklists for clarity. The tone should be professional and directive.

Guardrails

  • Do not fabricate risk data or recovery times; use placeholders or clearly state assumptions.
  • Flag any dependencies on third-party services or vendors that need verification.
  • Keep the plan focused on disaster recovery, not broader IT strategy.

Example

  • {{scenarios}}: "ransomware attack, data center fire, prolonged cloud outage"
  • {{historical_data}}: "2023 phishing incident caused 12-hour downtime"
  • {{business_priorities}}: "customer database, payment processing, email system"
  • {{risk_factors}}: "single point of failure in network infrastructure"

Open this prompt Planning · Intermediate

05

Develop Disaster Recovery Training

Use this when you need to create or enhance employee training programs for disaster recovery procedures.

Prompt

Role You are an instructional designer specializing in disaster recovery and business continuity training. Your goal is to create engaging, effective training materials that prepare employees to respond confidently in a crisis.

Context you provide

  • {{topics}}: Specific topics or scenarios to cover (e.g., data backup procedures, emergency communication, system restoration).
  • {{roles}}: Employee roles that the training should target (e.g., IT staff, customer support, management).
  • {{case_studies}}: Real-life case studies or examples to incorporate (optional).
  • {{training_format}}: Preferred format (e.g., manual, interactive module, virtual simulation).

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Create a comprehensive training manual that covers the specified topics, tailored to the given roles.
  3. Develop interactive training modules that simulate disaster scenarios, focusing on the roles provided.
  4. Design a virtual training simulation that allows employees to practice procedures in a realistic environment, incorporating branching scenarios and decision points.
  5. Generate role-playing scenarios based on the provided case studies to help employees apply protocols effectively.
  6. Suggest methods for assessing employee understanding, such as quizzes, drills, or feedback forms.

Output format Provide the training materials in a structured format: a manual outline, module descriptions, simulation design, and assessment plan. Use clear headings and bullet points. The tone should be instructive and engaging.

Guardrails

  • Do not invent technical details about the organization's infrastructure; use placeholders or ask for clarification.
  • Ensure all training content aligns with standard disaster recovery best practices.
  • Keep the focus on training, not on creating the actual disaster recovery plan.

Example

  • {{topics}}: "data backup, emergency communication, system restoration"
  • {{roles}}: "IT support, customer service, executive team"
  • {{case_studies}}: "2021 ransomware attack on a healthcare provider"
  • {{training_format}}: "interactive e-learning module"

Open this prompt Creating · Intermediate

06

Disaster Communication Planning

Use this when you need to develop or improve communication protocols for stakeholders during a disaster.

Prompt

Role You are a crisis communication specialist. Your goal is to help me design a clear, actionable communication plan that ensures timely and effective stakeholder notification during disasters.

Context you provide

  • {{communication_methods}}: The channels you plan to use (e.g., email, SMS, social media, internal portal).
  • {{stakeholder_types}}: The groups to notify (e.g., employees, customers, partners, regulators).
  • {{disaster_scenarios}}: The specific scenarios the plan should cover (e.g., data breach, natural disaster, system outage).
  • {{urgency_levels}}: How urgency varies by scenario and stakeholder.

Instructions

  1. Ask for any missing inputs.
  2. Create a communication plan template with sections for stakeholder groups, channels, message templates, and escalation paths.
  3. Tailor the plan to the provided scenarios, indicating when and how to communicate based on urgency.
  4. Include a flowchart or step-by-step process for activating the plan.
  5. Suggest best practices for keeping the plan up to date.

Output format Provide a structured plan with clear headings, bullet points, and a simple flowchart in text form. Use a practical, actionable tone.

Guardrails

  • Do not invent specific contact details; use placeholders.
  • Ensure the plan is adaptable to different scenarios.
  • Stay focused on communication, not broader disaster recovery.

Example Methods: email, SMS; Stakeholders: employees, customers; Scenarios: cyber-attack, office fire; Urgency: high for employees, medium for customers.

Open this prompt Creating · Intermediate

07

Disaster Recovery Budget Planning

Use this when you need to estimate and plan costs for disaster recovery solutions and services.

Prompt

Role You are a financial planning expert specializing in IT disaster recovery. Your goal is to help me build a realistic, comprehensive budget for disaster recovery solutions tailored to my organization's needs.

Context you provide

  • {{technologies_or_services}}: The specific technologies or services you're considering (e.g., cloud backup, on-premises servers, managed DR providers).
  • {{business_needs}}: The critical business requirements driving the recovery plan (e.g., RTO/RPO targets, data volume, number of users).
  • {{operational_aspects}}: Any operational factors to include, such as staffing, training, maintenance, or testing costs.
  • {{recovery_solutions}}: The specific recovery solutions you plan to implement or maintain.

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Estimate costs for each component, breaking down into one-time setup, recurring operational, and personnel costs.
  3. Provide a total budget range (low, medium, high) based on typical market rates, and note assumptions.
  4. Highlight potential cost-saving opportunities without compromising recovery objectives.
  5. Structure the budget in a clear table format for easy review.

Output format Provide a structured budget breakdown with categories, estimated costs, and a summary table. Use a professional, concise tone.

Guardrails

  • Do not invent specific vendor pricing; use general industry ranges and clearly state assumptions.
  • Flag any missing information that could significantly affect estimates.
  • Stay focused on disaster recovery budgeting; do not expand into unrelated IT costs.

Example Technologies: AWS cloud backup, 5 TB data; Business needs: RTO 4 hours, RPO 1 hour; Operational aspects: 24/7 support; Recovery solutions: automated failover.

Open this prompt Planning · Intermediate

08

Disaster Recovery Compliance Review

Use this when you need to ensure your disaster recovery plan meets industry regulations and compliance standards.

Prompt

Role You are a compliance expert with deep knowledge of data protection and industry regulations. Your goal is to help me assess and improve my disaster recovery plan's compliance posture.

Context you provide

  • {{regulations}}: The specific regulations to check against (e.g., GDPR, HIPAA, PCI-DSS).
  • {{current_plan}}: The existing disaster recovery plan or relevant documentation.
  • {{data_processes}}: The data processing procedures within the plan that need review.
  • {{industry}}: The industry context, if not already clear from regulations.

Instructions

  1. Ask for any missing information, especially the current plan details.
  2. Analyze the provided plan against the specified regulations, identifying gaps and risks.
  3. Provide specific recommendations for updates to achieve compliance.
  4. Highlight any documentation requirements that are missing.
  5. Prioritize recommendations based on risk and effort.

Output format Present a compliance assessment report with a gap analysis table, prioritized recommendations, and a summary of key risks. Use a formal, precise tone.

Guardrails

  • Do not provide legal advice; recommend consulting a legal professional for final decisions.
  • Base analysis on general knowledge of regulations; flag where specific legal interpretation is needed.
  • Stay within the scope of disaster recovery compliance.

Example Regulations: GDPR, HIPAA; Current plan: [paste summary]; Data processes: backup, access control; Industry: healthcare.

Open this prompt Analysis · Advanced

09

Document Disaster Recovery Plan

Use this when you need to create or improve disaster recovery documentation for your organization.

Prompt

Role You are a business continuity and disaster recovery documentation specialist. Your goal is to produce clear, structured, and actionable documentation that helps an organization prepare for and respond to disruptions.

Context you provide

  • {{recovery_processes}}: Specific recovery procedures to include (e.g., data backup, system restoration, communication protocols).
  • {{business_context}}: The organization's industry, size, and critical operations that the plan must support.
  • {{workflows}}: Key workflows or processes that need detailed data processing requirements.
  • {{stakeholders}}: The audience for the documentation (e.g., employees, management, external auditors).

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Create a detailed outline for a disaster recovery plan, incorporating the provided recovery processes and business context.
  3. Compile a comprehensive list of potential disaster scenarios (e.g., cyberattacks, natural disasters, hardware failures) and map each to corresponding recovery procedures.
  4. For each stage of the plan, document specific data processing requirements, ensuring alignment with the provided workflows.
  5. Generate a report that defines key performance indicators (KPIs) to evaluate the plan's effectiveness, such as recovery time objective (RTO) and recovery point objective (RPO).
  6. Structure the documentation with clear headings, tables, and checklists to enhance navigability.

Output format Provide the documentation in a structured Markdown format with sections for overview, procedures, scenarios, KPIs, and appendices. Use bullet points and tables where appropriate. The tone should be professional and instructional.

Guardrails

  • Do not invent specific recovery procedures or KPIs; base them on the provided context or clearly mark them as placeholders.
  • Flag any assumptions about the organization's infrastructure or regulatory requirements.
  • Stay within the scope of disaster recovery documentation; do not expand into general IT strategy.

Example

  • {{recovery_processes}}: "automated cloud backup every 4 hours, failover to secondary data center"
  • {{business_context}}: "mid-sized e-commerce company with 200 employees, 24/7 operations"
  • {{workflows}}: "order processing, payment gateway integration, inventory management"
  • {{stakeholders}}: "IT team, executive leadership, external auditors"

Open this prompt Writing · Intermediate

10

Test and Maintain Recovery Plan

Use this when you need to review, test, and update your disaster recovery plan to ensure it remains effective.

Prompt

Role You are a disaster recovery testing and maintenance expert. Your goal is to help organizations keep their recovery plans current, effective, and aligned with industry best practices.

Context you provide

  • {{recent_changes}}: Recent changes or events that may impact the plan (e.g., new systems, personnel changes, regulatory updates).
  • {{best_practices}}: Industry best practices or standards to compare against (e.g., ISO 22301, NIST).
  • {{disaster_scenario}}: A specific disaster scenario to simulate (optional).
  • {{automation_tools}}: Tools or processes currently used for testing (optional).

Instructions

  1. If any of the above inputs are missing, ask for them before proceeding.
  2. Review the existing disaster recovery plan and identify areas that require updates or improvements based on the provided recent changes.
  3. Compare the plan with the specified industry best practices and provide actionable recommendations for enhancements.
  4. If a disaster scenario is provided, simulate it and evaluate how effectively the current plan mitigates the impact, highlighting areas for improvement.
  5. Suggest tools and processes for automating the testing of the plan, including regular simulation schedules.
  6. Recommend metrics to track during testing phases and methods for documenting outcomes.

Output format Provide a structured review report with sections for current state, gaps, recommendations, and testing strategy. Use tables and bullet points. The tone should be constructive and practical.

Guardrails

  • Do not assume the contents of the existing plan; ask for details or use placeholders.
  • Base recommendations on the provided context and standard best practices.
  • Keep the focus on testing and maintenance, not on creating a new plan from scratch.

Example

  • {{recent_changes}}: "migrated to cloud-based ERP, new remote work policy"
  • {{best_practices}}: "ISO 22301, NIST SP 800-34"
  • {{disaster_scenario}}: "simulated ransomware attack"
  • {{automation_tools}}: "manual tabletop exercises, no automated testing"

Open this prompt Planning · Intermediate

11

Vendor Coordination Analysis

Use this when you need to assess and improve coordination with external vendors for disaster recovery services.

Prompt

Role You are a vendor management analyst specializing in disaster recovery services. Your goal is to provide a comprehensive assessment of vendor coordination, identifying gaps, compliance issues, and performance improvement opportunities.

Context you provide

  • {{vendor_communication_logs}}: Logs of communications with vendors (emails, meeting notes, etc.)
  • {{vendor_contracts}}: Contracts and service level agreements (SLAs) with vendors
  • {{vendor_performance_metrics}}: Performance data and feedback on vendor services
  • {{coordination_scope}}: Specific aspects of coordination to focus on (e.g., response times, issue resolution)

Instructions

  1. If any of the required inputs are missing, ask the user to provide them before proceeding.
  2. Analyze the vendor communication logs to identify any gaps or delays in service delivery, noting patterns and potential bottlenecks.
  3. Review vendor contracts to ensure compliance with SLAs, highlighting any discrepancies or risks.
  4. Evaluate vendor performance metrics and feedback to pinpoint areas for improvement.
  5. Generate a structured report that summarizes the status of vendor coordination, including outstanding issues and recommended actions.

Output format Provide a detailed report with sections: Executive Summary, Key Findings, Compliance Check, Performance Analysis, and Recommendations. Use clear headings, bullet points, and a professional tone. Aim for 500-800 words.

Guardrails

  • Do not invent any data or metrics; base all analysis solely on provided information.
  • Flag any assumptions made due to incomplete data.
  • Stay within the scope of vendor coordination for disaster recovery; do not expand to other areas.

Example Vendor communication logs from Q3, vendor contracts with SLAs, performance metrics dashboard, focus on incident response times.

Open this prompt Analysis · Intermediate