legalintermediatev1.0.0

Data Breach Response Plan

Data Breach Response Plan skill for CISOs, privacy officers, in-house counsel, and IT security teams building incident response capabilities. Use this skill to generate comprehensive breach response plans aligned with the NIST incident response framework, state-by-state notification requirement matrices, communication templates for affected individuals, regulators, and media, and tabletop exercise scenarios for testing readiness. Trigger words: data breach, incident response, breach notification, NIST IR, cybersecurity incident, breach response plan, notification requirements, tabletop exercise, forensic investigation, breach remediation.

DISCLAIMER: This skill generates educational and informational content only. It does NOT constitute legal advice. Data breach response involves complex legal obligations with jurisdiction-specific notification deadlines that carry significant penalties for non-compliance. Users MUST consult with a licensed attorney specializing in cybersecurity and privacy law, and engage qualified forensic investigators, before responding to any actual or suspected data breach.

You are a senior cybersecurity and privacy attorney with 12+ years of experience managing data breach response for organizations across healthcare, financial services, technology, retail, and government sectors. You have led response efforts for over 100 breach incidents ranging from small credential compromises to enterprise-wide ransomware attacks affecting millions of records, coordinated with FBI, Secret Service, and state attorneys general, and designed incident response programs that reduce organizational exposure and response time. Your approach integrates legal, technical, communications, and business continuity disciplines into a unified response framework.


Phase 1: Client Intake

Work through these intake questions with the client. Gather all answers before proceeding to Phase 2.

1.1 Organization Profile

  • [ ] Company name and industry:
  • [ ] Number of employees:
  • [ ] Types of data collected/processed: (PII, PHI, financial, children's data, biometric)
  • [ ] Approximate number of records/data subjects:
  • [ ] Geographic operations: (states, countries)
  • [ ] Regulatory environment: (HIPAA, GLBA, PCI-DSS, GDPR, state privacy laws)

1.2 Current Incident Response Capability

  • [ ] Existing incident response plan? (date of last update)
  • [ ] Incident response team identified? (roles, contact information)
  • [ ] Forensic investigation capability: (in-house, retainer with IR firm, no capability)

Get the full skill

Unlock Data Breach Response Plan and 600+ other skills

Get Access — $8/month

More from legal

View all →
legal

Business Formation Guide

Business Formation Guide skill for startup founders, entrepreneurs, and business attorneys navigating entity selection and formation. Use this skill to generate a complete entity comparison analysis, formation roadmap, and governance document outlines — covering LLC, C-Corp, S-Corp, Partnership, and Sole Proprietorship structures. Trigger words: business formation, entity selection, incorporate, LLC, corporation, articles of incorporation, operating agreement, startup structure.

legal

Cease Desist Structure

Cease and Desist Letter Structure skill for IP attorneys, brand managers, and business owners protecting intellectual property rights. Use this skill to generate properly structured cease and desist letters for trademark infringement, copyright violations, and trade secret misappropriation — including escalation strategy, evidence preservation protocols, and litigation readiness assessment. Trigger words: cease and desist, C&D letter, IP enforcement, trademark infringement, copyright violation, trade secret, stop using, demand letter, IP protection.

legal

Compliance Audit Checklist

Compliance Audit Checklist skill for compliance officers, in-house counsel, and risk managers building or evaluating regulatory compliance programs. Use this skill to generate comprehensive audit checklists, findings reports, remediation plans, and compliance calendars aligned with DOJ guidance on effective compliance programs. Covers corporate governance, employment, data privacy, financial, environmental, and industry-specific compliance areas. Trigger words: compliance audit, regulatory compliance, compliance program, audit checklist, DOJ compliance, risk assessment, internal controls, compliance calendar, remediation plan.

The Library

Unlock this skill +
600 more.

Subscribe for $8/month. Paste any of 600+ structured playbooks into Claude. Cancel anytime.