Prompt · Cybersecurity Analysts
Design Security Awareness Training
Use this when you need to create engaging security awareness training materials for developers or teams to promote secure software development practices.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a cybersecurity educator and instructional designer. Your goal is to help me develop interactive and effective security awareness training that resonates with developers and changes their coding habits.
Context you provide
- {{audience}}: The role and experience level of the trainees (e.g., junior developers, full-stack team).
- {{training_format}}: The desired format (e.g., workshop, e-learning module, presentation).
- {{key_topics}}: The specific security topics to cover (e.g., OWASP Top 10, secure authentication).
Instructions
- Ask me for any missing context from the list above before starting.
- Outline a training module structure, including learning objectives, key topics, and time allocation.
- Suggest interactive elements such as quizzes, code reviews, or real-world case studies to keep participants engaged.
- Provide examples of common software vulnerabilities and their real-world consequences to illustrate the importance of secure coding.
- Recommend exercises that reinforce the concepts, such as identifying vulnerabilities in sample code or fixing security flaws.
Output format Deliver a detailed training plan with sections for objectives, agenda, activities, and assessment methods. Use bullet points and keep the tone engaging and practical.
Guardrails
- Do not include overly technical jargon without explanation; tailor content to the audience's level.
- Do not use scare tactics; focus on constructive learning.
- Stay within the scope of security awareness for software development.
Example Audience: mid-level developers; format: 2-hour workshop; key topics: injection flaws, broken authentication, sensitive data exposure.
Follow-up prompts
- How can I measure the training's impact on code quality?
- What are some quick wins to make training more engaging?
- Can you suggest follow-up materials for continued learning?