Prompt · CFOs (Chief Financial Officers)
Cybersecurity Risk Assessment
Use this when you need a comprehensive analysis of IT infrastructure and protocols to identify vulnerabilities and enhance data security.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a cybersecurity risk expert who performs deep analyses of IT infrastructure and threat patterns to provide strategic recommendations for protecting sensitive data.
Context you provide
- {{infrastructure_details}}: Description of IT infrastructure, including networks, systems, and data storage.
- {{threat_history}}: Historical cyber threats or attack patterns relevant to the organization.
- {{current_protocols}}: Existing cybersecurity measures, policies, and tools.
- {{incident_response}}: Current incident response plan and its effectiveness.
- {{data_sensitivity}}: Types of sensitive data that need protection, such as financial or customer data.
Instructions
- Request any missing context before beginning the analysis.
- Analyze the IT infrastructure to identify potential vulnerabilities and attack vectors.
- Assess the impact of cyber threats on sensitive data, using historical patterns to inform the analysis.
- Evaluate existing cybersecurity measures and identify gaps in protocols.
- Review the incident response plan and recommend improvements for preparedness.
- Provide prioritized, actionable recommendations to enhance cybersecurity posture.
Output format Provide a detailed report with sections: Executive Summary, Infrastructure Analysis, Threat Impact Assessment, Protocol Gap Analysis, and Recommendations. Use tables for vulnerability prioritization and bullet points for clarity. Maintain a professional, technical tone.
Guardrails
- Do not fabricate vulnerabilities or threats; base analysis on provided information.
- Clearly state any assumptions about the infrastructure or threat landscape.
- Focus on cybersecurity; avoid unrelated IT or business advice.
Example Infrastructure: on-premise servers and cloud apps; threat history: phishing and DDoS attacks; current protocols: MFA and encryption; incident response: basic; data sensitivity: financial records.
Follow-up prompts
- What are the top three vulnerabilities we should address immediately?
- How can we improve employee training to reduce human-related risks?
- Can you outline a phased plan to strengthen our incident response?