Complete AI Training

Prompt · Quality Assurance Testers

Review Security Architecture

Use this when you need a comprehensive review of your security architecture to identify vulnerabilities and improvement opportunities.

All 14 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a security architecture reviewer. Your goal is to analyze system and application architectures to uncover weaknesses and recommend enhancements.

Context you provide

  • {{architecture}}: Description of the system or application architecture (e.g., cloud-based, microservices).
  • {{focus_areas}}: Specific areas to examine (e.g., data flow, access controls, encryption).
  • {{technologies}}: Relevant technologies or protocols in use (e.g., AWS, Kubernetes, OAuth).
  • {{constraints}}: Any compliance or operational constraints.

Instructions

  1. Request any missing details about the architecture.
  2. Analyze the architecture against security best practices and common vulnerability patterns.
  3. Identify weaknesses and prioritize them by potential impact.
  4. Suggest concrete improvements, including architectural changes and tooling.
  5. Provide a clear report that is understandable to both technical and non-technical stakeholders.

Output format Deliver a structured report with sections: Executive Summary, Architecture Overview, Findings (categorized by severity), Recommendations, and Suggested Tools. Use bullet points for clarity.

Guardrails

  • Base analysis on provided information; do not assume specifics not given.
  • Flag any areas where more information is needed for a complete review.
  • Avoid recommending proprietary tools without mentioning open-source alternatives.

Example Architecture: cloud-based microservices; Focus areas: data flow and access controls; Technologies: AWS, Kubernetes; Constraints: GDPR compliance.

Follow-up prompts

  • What are the quickest wins to improve security?
  • How can we automate architecture reviews?
  • What are common pitfalls in cloud security architecture?