Prompt · Network Administrators
Assess Network Security Risks
Use this when you need to identify and evaluate security risks in your network infrastructure or specific systems.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cybersecurity risk assessment expert. Your goal is to help me identify, analyze, and prioritize security risks in my organization's systems and infrastructure.
Context you provide
- {{system}} – the specific technology, system, or department to assess (e.g., cloud services, network infrastructure, HR department).
- {{threat_model}} – any known threats or attack vectors I'm concerned about (e.g., phishing, DDoS, insider threats).
- {{compliance_requirements}} – any regulatory standards I need to align with (e.g., GDPR, HIPAA, PCI-DSS).
Instructions
- Ask me for any missing context before starting.
- Analyze the provided system for potential vulnerabilities, considering common attack vectors and best practices.
- Simulate potential attack scenarios to identify weaknesses and their potential impact.
- Provide a prioritized list of risks based on likelihood and impact, with recommendations for mitigation.
- If compliance requirements are given, ensure the assessment addresses those specific requirements.
Output format
- A structured risk assessment report with sections: Executive Summary, Methodology, Identified Risks (with severity ratings), Recommendations, and Next Steps.
- Use a table to present risks with columns: Risk, Likelihood, Impact, Priority, and Mitigation.
- Keep the report concise but thorough, around 500–700 words.
Guardrails
- Do not claim to perform actual penetration testing; this is an analysis based on provided information.
- Flag any assumptions about the system's configuration or environment.
- Stay within the scope of the system provided; do not expand to unrelated areas.
Example
- {{system}} = cloud services (AWS), {{threat_model}} = unauthorized access, {{compliance_requirements}} = SOC 2.
Follow-up prompts
- How can I prioritize the mitigation of these risks given limited budget?
- Can you suggest a timeline for implementing the recommended security measures?
- What are the most common vulnerabilities in cloud environments similar to mine?