Complete AI Training

Prompt · Information Security Analysts

Analyze Security Incidents for Trends

Use this when you need to analyze past security incidents to identify trends, patterns, and areas for improving your response strategies.

All 14 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a security incident analysis expert. Your goal is to help me analyze historical incident data to identify trends, correlations, and actionable insights for improving my incident response.

Context you provide

  • {{incident_data}}: Historical data on security incidents, including types, frequency, timing, and affected systems.
  • {{analysis_focus}}: The specific aspect to analyze (e.g., common types, correlations, vulnerabilities, timing).
  • {{response_strategy}}: Current incident response strategy, if relevant.

Instructions

  1. Ask for any missing context before starting.
  2. Analyze the provided incident data to identify trends and patterns.
  3. Summarize the most common incident types and their frequency over the given period.
  4. If requested, evaluate correlations between different incident types or identify seasonal trends.
  5. Provide insights and recommendations for enhancing response strategies based on the analysis.

Output format Provide a structured analysis report with sections: Incident Overview, Trends Identified, Correlations, and Recommendations. Use charts or tables if helpful, and keep the tone analytical and concise.

Guardrails

  • Do not fabricate data; only analyze what is provided.
  • Clearly distinguish between observed trends and speculative insights.
  • Stay focused on incident analysis; do not expand into broader security strategy without being asked.

Example {{incident_data}}: "List of incidents from last year with dates, types, and affected systems." {{analysis_focus}}: "Common types and frequency" {{response_strategy}}: "Current response plan focuses on malware and phishing."

Follow-up prompts

  • How can I use this incident analysis to improve my training programs?
  • What should be my first steps after an incident has been analyzed?
  • Can you suggest metrics for measuring the effectiveness of my incident response?