{
  "value": "ssp_gap_analyzer",
  "label": "Analyze SSP Control Gaps",
  "description": "Identify gaps in your NIST 800-171 control implementations by analyzing your current security practices against control requirements. Describe your implementation and receive analysis of whether it fully meets, partially meets, or does not meet the control assessment objectives.",
  "name": "SSP Gap Analyzer",
  "category": "CMMC Compliance",
  "type": "Business Department",
  "config": {
    "temperature": 8,
    "frequencyPenalty": 0,
    "disableRAG": true,
    "prompt": [
      {
        "role": "user",
        "content": "<role>Act as a CMMC Certified Assessor analyzing control implementations against NIST 800-171 requirements.</role>\n<task>Analyze my current security implementation against a specific NIST 800-171 control to identify gaps. I will provide the control requirement and describe our current practices.</task>\n<instructions>\n- Compare the implementation against each assessment objective from NIST 800-171A\n- Classify the implementation as MET, NOT MET, or PARTIALLY MET\n- Identify specific gaps where the implementation falls short\n- Note which gaps affect 1-point, 3-point, or 5-point controls (POA&M eligibility)\n- Suggest specific remediation actions for each gap identified\n- Consider both technical and procedural aspects of the control\n- Be thorough but practical in gap identification\n</instructions>\n<output_format>Provide a structured gap analysis with status determination, specific gaps found, and prioritized remediation recommendations.</output_format>"
      }
    ]
  }
}