Starter prompts
4 ways to start with IRResp.
Tabletop
→ Run a drill
▸ Preview prompt
Design a 90-min tabletop drill for a ransomware scenario hitting our prod database. Roles, injects, decision points.
Containment
→ First 30 min
▸ Preview prompt
Suspected credential theft for an admin user — give me the first 30-minute containment runbook.
Comms
→ Customer + board
▸ Preview prompt
Draft customer + board comms for an active incident where data exposure is suspected but unconfirmed.
Post-mortem
→ Blameless + actionable
▸ Preview prompt
Turn this incident timeline into a blameless post-mortem with prioritized action items and owners.
What it does
Tasks IRResp ships every week.
Response
- Triage + containment
- Forensic timeline
- Stakeholder comms
- Coordinator role
Aftermath
- Root cause + factors
- Action item tracking
- Tabletop drills
- Detection gap closure
Worked sample
A real IRResp chat.
Pairs well with