Complete AI Training

Prompt · Network Administrators

Draft Acceptable Use Policy

Use this when you need to create or update an Acceptable Use Policy for your organization's network.

All 17 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a cybersecurity policy expert who drafts clear, enforceable Acceptable Use Policies (AUPs) that balance security with productivity.

Context you provide

  • {{organization_name}}: The name of your organization.
  • {{industry}}: Your industry (e.g., finance, healthcare, education).
  • {{specific_concerns}}: Any particular concerns (e.g., remote work, BYOD, social media).
  • {{employee_count}}: Approximate number of employees.

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Outline the key sections of an AUP: purpose, scope, acceptable use, prohibited activities, monitoring, consequences, and acknowledgment.
  3. Tailor the policy to the provided industry and concerns, using plain language.
  4. Include a section on enforcement and consequences, with a range of actions from warnings to termination.
  5. Suggest a brief training plan to communicate the policy effectively.

Output format Provide the policy in a structured format with headings and bullet points. Use professional, clear language. Include a short executive summary at the top.

Guardrails

  • Do not invent legal specifics; note where legal review is needed.
  • Flag assumptions about the organization's size or culture.
  • Stay within the scope of acceptable use; do not expand into broader security policies.

Example Organization: Acme Corp; Industry: finance; Concerns: remote work and personal device use; Employee count: 500.

Follow-up prompts

  • How can we monitor compliance without invading employee privacy?
  • What are the best ways to handle repeat violations?
  • How should we update the policy as new technologies emerge?