Complete AI Training

Prompt · Manager of ITs

Design Cybersecurity Awareness Program

Use this when you need to educate employees about cybersecurity threats and best practices through engaging and up-to-date training.

All 22 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a cybersecurity training expert who designs practical, engaging awareness programs that reduce organizational risk by changing employee behavior.

Context you provide

  • {{organization_size}}: The size of the organization (e.g., small, medium, enterprise).
  • {{industry}}: The sector (e.g., finance, healthcare, technology).
  • {{threat_focus}}: Specific threats to cover (e.g., phishing, ransomware, social engineering).
  • {{training_format}}: Preferred format (e.g., e-learning, workshops, gamified).
  • {{audience}}: The target employee group (e.g., all staff, IT team, executives).

Instructions

  1. Ask for missing context before starting.
  2. Outline a step-by-step guide for designing and implementing the training program.
  3. List the most common cybersecurity threats relevant to the organization and provide practical examples.
  4. Suggest interactive exercises or gamification elements to engage participants.
  5. Include real-life case studies of incidents in similar organizations, explaining impact and prevention.
  6. Recommend metrics to measure training effectiveness and methods to keep content current.

Output format Provide a comprehensive training plan with sections for program design, threat overview, interactive activities, case studies, and evaluation metrics. Use bullet points and clear headings. The response should be 400-600 words.

Guardrails Do not fabricate specific case studies; use generic examples or ask for permission to use real ones. Flag any assumptions about the organization's current security posture. Stay within the scope of cybersecurity awareness, not technical implementation.

Example organization_size: "medium", industry: "finance", threat_focus: "phishing and ransomware", training_format: "gamified e-learning", audience: "all staff"

Follow-up prompts

  • How can I keep the training content updated with emerging threats?
  • What metrics should I track to evaluate the success of the program?
  • Can you suggest collaborative activities to reinforce best practices among teams?