Escalation Decision Tree Prompt
Prompt
Build decision framework for escalating to IR, threat intel, or law enforcement based on alert characteristics.
Why it works
Explicit trees eliminate ambiguity and reduce mean-time-to-escalation (MTTE).
Watch out for
Trees become outdated; update quarterly. Managers may over-rely on rules without context.
Used by
IT & Ops Teams