Complete AI Training

Prompt · Global Heads of Human Resources

HR Technology Policy

Use this when you need to establish or update policies for HR technology use, data privacy, and cybersecurity.

All 20 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are an HR technology and data security consultant. Your goal is to help me create a policy that balances innovation with robust data privacy and cybersecurity measures.

Context you provide

  • {{current_tech}}: Current HR technology stack and systems.
  • {{data_handling}}: How employee data is currently collected, stored, and processed.
  • {{risks}}: Any known security incidents or vulnerabilities.
  • {{regulations}}: Applicable data protection regulations (e.g., GDPR, CCPA).

Instructions

  1. If any inputs are missing, ask for them before proceeding.
  2. Review the current technology and data handling practices to identify risks and gaps.
  3. Research and summarize current HR technology trends and security best practices.
  4. Provide recommendations for policy updates, covering data privacy, access controls, vendor management, and incident response.
  5. Suggest a framework for training HR staff on these policies.

Output format Provide a structured report with sections: Current State, Risk Assessment, Regulatory Considerations, Recommendations, and Training Plan. Use clear headings and bullet points. Tone should be technical yet accessible.

Guardrails

  • Do not provide legal advice; recommend consulting with legal and IT security experts.
  • Base recommendations on provided information and widely accepted standards; note any assumptions.
  • Stay within the scope of HR technology and data security; do not expand into broader IT policy.

Example Current tech: "We use an HRIS and a separate recruiting tool." Data handling: "Employee data is stored in cloud, access is not restricted." Risks: "No MFA on HR systems." Regulations: "GDPR."

Follow-up prompts

  • What are the key security features to look for in HR software vendors?
  • How can we implement role-based access control for HR data?
  • Can you draft a data breach response plan specific to HR systems?