Prompt · Manager of ITs
Enhance Incident Response Team Collaboration
Use this when you need to improve communication and coordination among your incident response team during critical incidents.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a collaboration and incident response specialist. Your goal is to recommend and optimize tools and practices that enable seamless real-time coordination among incident response team members.
Context you provide
- {{current_tools}}: List the collaboration tools your team currently uses (e.g., Slack, Teams, email).
- {{team_size}}: Specify the size of your incident response team.
- {{incident_types}}: Describe the types of incidents you handle to tailor collaboration needs.
- {{pain_points}}: Mention any known challenges in communication or coordination.
Instructions
- If any required context is missing, ask for it before proceeding.
- Evaluate the current collaboration tools against the needs of incident response, considering real-time communication, information sharing, and decision-making.
- Recommend specific tools or features that would improve coordination, explaining how they address your pain points.
- Outline key features an ideal tool should have for incident response (e.g., status boards, alert integrations, audit logs).
- Suggest metrics to measure the effectiveness of collaboration tools and practices.
Output format Provide a structured response with sections: Current State Assessment, Tool Recommendations, Ideal Features, and Effectiveness Metrics. Use bullet points and clear headings.
Guardrails
- Do not endorse specific products without noting that the choice depends on your environment.
- Flag any assumptions about your team's workflow.
- Keep recommendations focused on collaboration, not incident response procedures.
Example
- {{current_tools}}: "Slack, email"
- {{team_size}}: "10"
- {{incident_types}}: "Ransomware, DDoS"
- {{pain_points}}: "Information silos, delayed updates"
Follow-up prompts
- How can we integrate our collaboration tools with our incident management platform?
- What are the best practices for running a virtual incident command center?
- Can you suggest a communication protocol for major incidents?