AI Supply Chain Security Audit & Compliance Report
Generate a professional security assessment for AI systems aligned with UK Government standards and the NCSC framework.
Act as a Lead Cybersecurity Policy Advisor specializing in UK Government technology standards. Your task is to draft a comprehensive 'AI Supply Chain Security Report' for the following project: [PROJECT_NAME]. ### Context and Scope - **Organization Type:** [ORGANIZATION_TYPE] - **AI System Purpose:** [AI_SYSTEM_PURPOSE] - **Key Vendors/Partners:** [VENDOR_LIST] ### Report Requirements Please structure the report according to the following UK Administrative sections: 1. **Executive Summary:** High-level risk posture and strategic alignment with the UK National AI Strategy. 2. **Supply Chain Mapping:** Identification of third-party dependencies, including data providers, model hosting services (e.g., AWS, Azure, GCP), and open-source libraries. 3. **Threat Modeling:** Analysis of potential vulnerabilities such as prompt injection, training data poisoning, and model theft, specifically within the supply chain context. 4. **Compliance & Sovereignty:** Assessment of GDPR/UK Data Protection Act compliance and the physical/legal jurisdiction of data processing sites. 5. **Risk Mitigation Strategy:** Actionable recommendations based on the NCSC 'Secure by Design' principles. 6. **Vendor Due Diligence Checklist:** A set of mandatory security questions for the listed vendors. ### Tone and Style - Use formal, authoritative British English. - Ensure the language is suitable for both technical stakeholders and senior government officials. - Reference UK-specific frameworks (NCSC, DSIT, Central Digital and Data Office). ### Specific Constraints [ADDITIONAL_CONSTRAINTS]
Act as a Lead Cybersecurity Policy Advisor specializing in UK Government technology standards. Your task is to draft a comprehensive 'AI Supply Chain Security Report' for the following project: [PROJECT_NAME]. ### Context and Scope - **Organization Type:** [ORGANIZATION_TYPE] - **AI System Purpose:** [AI_SYSTEM_PURPOSE] - **Key Vendors/Partners:** [VENDOR_LIST] ### Report Requirements Please structure the report according to the following UK Administrative sections: 1. **Executive Summary:** High-level risk posture and strategic alignment with the UK National AI Strategy. 2. **Supply Chain Mapping:** Identification of third-party dependencies, including data providers, model hosting services (e.g., AWS, Azure, GCP), and open-source libraries. 3. **Threat Modeling:** Analysis of potential vulnerabilities such as prompt injection, training data poisoning, and model theft, specifically within the supply chain context. 4. **Compliance & Sovereignty:** Assessment of GDPR/UK Data Protection Act compliance and the physical/legal jurisdiction of data processing sites. 5. **Risk Mitigation Strategy:** Actionable recommendations based on the NCSC 'Secure by Design' principles. 6. **Vendor Due Diligence Checklist:** A set of mandatory security questions for the listed vendors. ### Tone and Style - Use formal, authoritative British English. - Ensure the language is suitable for both technical stakeholders and senior government officials. - Reference UK-specific frameworks (NCSC, DSIT, Central Digital and Data Office). ### Specific Constraints [ADDITIONAL_CONSTRAINTS]
More Like This
Back to LibraryAI NHS Supplier Proposal Architect
This prompt helps suppliers draft professional, evidence-based proposals tailored to the specific regulatory requirements of the UK National Health Service. It focuses on aligning technical solutions with the NHS Long Term Plan, clinical safety standards, and Social Value requirements.
AI Compliance Documentation Generator
This prompt generates comprehensive documentation aligned with the UK Government's 'pro-innovation approach to AI regulation' and the Central Digital and Data Office (CDDO) standards. It helps users draft Algorithmic Transparency Reports, Data Protection Impact Assessments (DPIAs), and ethical risk frameworks.
AI Tender Evaluation Matrix (UK Public Sector)
This prompt transforms AI into a Senior Procurement Officer to evaluate supplier bids. It uses the UK Government's standard 0-5 scoring methodology to assess technical merit, social value, and compliance against specific Invitation to Tender (ITT) requirements.