← Prompt Library / Cybersecurity

Cybersecurity

Shadow IT Discovery & Amnesty

Find the unsanctioned tools your team actually uses, without a witch hunt: the amnesty message, the triage rubric, and the sanctioned-alternative plan.

Help me run a shadow IT amnesty at {{organisation}}. Sanctioned stack: {{official_tools}}. Suspicion level: {{context}} (what I think people are using and why).

Design: the amnesty message (no punishment, genuine curiosity — 'tell us what you use and why; we'll either sanction it or find you something as good'), the discovery supplement (expense reports, SSO logs, browser-extension audit — where to look), the triage rubric per discovered tool (data sensitivity × user count × alternative quality → sanction / migrate / kill), the migration playbook for 'kill' decisions that doesn't just drive it deeper underground (the sanctioned alternative must actually work), and the standing process so this doesn't rebuild — a lightweight request path faster than just signing up.

Fields like {{ this }} are placeholders — replace them with your own details, or let Aria ask you for them.

shadow-it governance saas

Run this prompt with your real data

This prompt runs with Aria connected to your email, files, CRM and 40+ other services — and you can schedule it to run automatically.

Start Free Week

More Cybersecurity prompts

Password & MFA Policy (Modern)

Write a password and MFA policy aligned with current guidance — length over complexity theatre, MFA...

Phishing Response Playbook

A playbook for when someone clicks: immediate containment steps by scenario, communication, and the...

Vendor Security Review (SMB-Sized)

Assess a software vendor's security before trusting them with your data — the questions that matter,...

Quarterly Access Review

Run a quarterly access review: who has access to what, the leaver/mover gaps, and the deprovisioning...

Staff Security Briefing (Non-Boring)

Write a short security awareness briefing staff will actually absorb — current scams, what to do in...

Backup & Recovery Test

Design a real recovery test — not 'backups ran' but 'we restored and it worked': scenarios, steps, s...