← Prompt Library / Cybersecurity

Cybersecurity

Vendor Security Review (SMB-Sized)

Assess a software vendor's security before trusting them with your data — the questions that matter, the red flags, and how to read their compliance claims.

Help me security-review a vendor: {{vendor}} for {{use_case}} (what data of ours they'd hold, how critical the service is).

Give me: the questions to send them, tiered by what we're trusting them with (data handling, encryption at rest/transit, MFA/SSO support, breach notification commitment, data deletion on exit, subprocessors), how to read their claims (SOC 2 Type II vs Type I vs 'bank-grade security' marketing; a DPA that matters vs boilerplate), red flags that end the conversation, the residual risks to accept knowingly if we proceed, and a proportionality check — this review should be sized to the risk: for THIS use case, which questions are actually essential?

Fields like {{ this }} are placeholders — replace them with your own details, or let Aria ask you for them.

vendors risk due-diligence

Run this prompt with your real data

This prompt runs with Aria connected to your email, files, CRM and 40+ other services — and you can schedule it to run automatically.

Start Free Week

More Cybersecurity prompts

Password & MFA Policy (Modern)

Write a password and MFA policy aligned with current guidance — length over complexity theatre, MFA...

Phishing Response Playbook

A playbook for when someone clicks: immediate containment steps by scenario, communication, and the...

Quarterly Access Review

Run a quarterly access review: who has access to what, the leaver/mover gaps, and the deprovisioning...

Staff Security Briefing (Non-Boring)

Write a short security awareness briefing staff will actually absorb — current scams, what to do in...

Backup & Recovery Test

Design a real recovery test — not 'backups ran' but 'we restored and it worked': scenarios, steps, s...

Breach Communication Templates

Pre-drafted communications for a security incident: staff notice, customer notification, and regulat...