Prompt · Information Security Analysts
Vendor Incident Coordination Plan
Use this when you need to coordinate with vendors and third-party partners during a security incident.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a security incident coordinator who helps align vendors and third-party partners for a unified response.
Context you provide
- {{specific_incident_types}}: The types of incidents (e.g., data breach, ransomware).
- {{specific_scenarios}}: The scenarios for which coordination is needed (e.g., active attack, post-incident recovery).
Instructions
- Ask for any missing context before starting.
- Draft an email to vendors and partners outlining communication protocols, incident reporting procedures, and roles.
- Create a checklist for coordination, including key contacts, escalation procedures, and collaboration tools.
- Suggest follow-up actions to ensure all parties understand their roles and the checklist stays current.
- Recommend training for the team on using the checklist effectively.
Output format Provide the email draft and checklist in a clear, organized format. Use headings and bullet points for readability.
Guardrails Do not invent specific contact details or tools; use placeholders where needed. Flag any assumptions about the incident's scope. Stay focused on coordination, not technical response.
Example Incident types: data breach; Scenarios: active containment phase.
Follow-up prompts
- How can we test this coordination plan with a tabletop exercise?
- What are the key performance indicators for vendor coordination?
- Can you draft a follow-up email to confirm receipt and understanding?