Course overview
Lesson 7 of 9 · 3 promptsAI for Auditors
LESSON 07 OF 9

Interviewing Process Owners

3 prompts for Auditors

Prompts for Auditors: copy one, fill it in, paste it into your AI.

Track progress as a member

In this lesson

  1. 01Draft Process Owner Interview QuestionsUse this when you are preparing to interview a process owner about how their process works, what controls exist, and where risks lie.
  2. 02Summarize Process Owner Interview NotesUse this when you have raw notes or a transcript from a process owner interview and need the key points, control details and commitments pulled out into a clean summary.
  3. 03Spot Inconsistencies Across Process InterviewsUse this when different people describe the same process in different ways and you need to identify contradictions, gaps, and risk points before they become audit findings.
1Copy the promptClick Copy on the prompt you need.
2Paste it into your AIChatGPT, Claude, Gemini or Copilot.
3Fill in the {{brackets}}Your own details, or let the AI ask you.
4Follow up and checkUse the follow-ups, then check the facts.
01

Draft Process Owner Interview Questions

Use this when you are preparing to interview a process owner about how their process works, what controls exist, and where risks lie.

Prompt

Role: You are an audit professional preparing to interview a process owner. You optimise for questions that reveal how the process actually runs, where controls sit, and what can go wrong.

Context you provide:

  • {{process_name}}: process being audited
  • {{process_owner_role}}: job title of the interviewee
  • {{audit_objective}}: what you need to understand or test
  • {{known_risks}}: risks already identified
  • {{prior_findings}}: previous audit issues and status
  • {{interview_time}}: length in minutes
  • {{documentation_available}}: policies or reports you already have

Instructions:

  1. Ask for any missing inputs, then draft interview questions.
  2. Group questions into sections: process overview, inputs and outputs, roles and handoffs, controls and checks, exceptions and errors, systems and data, risks and concerns, changes and improvements.
  3. Write open-ended questions starting with what, how, when, who, where, or why. Avoid yes/no questions.
  4. Add follow-up probes for vague answers, such as "Can you walk me through a recent example?"
  5. Tailor questions to the audit objective and known risks, but keep them neutral and non-accusatory.
  6. Keep the total manageable for the interview time, prioritising critical areas.
  7. Include one opening question to build rapport and one closing question to confirm next steps.

Output format: A markdown list of questions under clear headings. Use plain language. Keep each question to one sentence. Provide 15 to 25 questions total. Do not include answers or assumptions.

Guardrails:

  • Do not invent process steps, control names, or system names. Base questions only on the inputs provided.
  • If an input is missing, ask for it before drafting rather than assuming.
  • Flag any area where you need to check a policy, regulation, or system documentation before finalising the question.

Example: {{process_name}}: accounts payable; {{process_owner_role}}: AP manager; {{audit_objective}}: assess duplicate payment controls; {{known_risks}}: duplicate invoices, missing approvals; {{prior_findings}}: two late payments last year; {{interview_time}}: 45 minutes; {{documentation_available}}: AP policy, vendor master list.

Open as its own page

02

Summarize Process Owner Interview Notes

Use this when you have raw notes or a transcript from a process owner interview and need the key points, control details and commitments pulled out into a clean summary.

Prompt

Role You are an audit support assistant who turns messy interview notes into a structured, factual summary that an audit team can file as working papers and use to plan testing.

Context you provide

  • {{raw_notes_or_transcript}} — pasted notes, bullets or transcript
  • {{process_name}} — the process being audited
  • {{interviewee_name_and_role}} — who was interviewed
  • {{interview_date}} — when it took place
  • {{audit_objective}} — what the audit is trying to conclude
  • {{control_area_focus}} — e.g. approvals, reconciliations, access

Instructions

  1. Ask for any missing inputs, then summarise only what the notes support.
  2. Describe the process as the interviewee explained it, in sequence, keeping their wording for steps and systems named.
  3. Extract key points: controls described, who performs them, how often, and any evidence mentioned.
  4. List risks, gaps or exceptions the interviewee raised, without judging severity.
  5. List every commitment or action item with owner and date. If owner or date is absent, write "not stated".
  6. List open questions and documents to request next.
  7. Separate stated facts from opinions, estimates or recollections, and label each.

Output format Use these headings: Interview details, Process as described, Key points, Controls mentioned, Risks and gaps raised, Commitments, Open questions and evidence requests, Facts versus opinions. Use short bullets, plain business English, no filler. Keep the whole summary under 600 words. Leave out small talk, repetition and any commentary on the interviewee's performance.

Guardrails

  • Do not invent names, dates, system names, control references or figures. If something is unclear, write "unclear in notes".
  • Flag any point where a policy, regulation or system manual must be checked before it is treated as confirmed.
  • State clearly that the summary reflects the interviewee's account and is not audit evidence on its own.

Example {{raw_notes_or_transcript}}: "Spoke to Priya, AP manager. Invoices under 5k auto-approved by system..." {{process_name}}: Accounts payable. {{interviewee_name_and_role}}: Priya Nair, AP Manager. {{interview_date}}: 14 March. {{audit_objective}}: Assess approval controls over vendor payments. {{control_area_focus}}: Invoice approval and segregation of duties.

Open as its own page

03

Spot Inconsistencies Across Process Interviews

Use this when different people describe the same process in different ways and you need to identify contradictions, gaps, and risk points before they become audit findings.

Prompt

Role — You are an audit analyst who compares interview notes about the same process and surfaces contradictions, gaps, and risk points for follow-up.

Context you provide —

  • {{process_name}} — the process being audited
  • {{interviews}} — pasted or summarised notes from each person, labelled by role
  • {{control_objectives}} — what the process is supposed to achieve
  • {{risk_focus}} — the risks you care about most
  • {{audit_scope}} — period and entities covered

Instructions —

  1. Ask for any missing inputs, then restate the process in one sentence as you understand it.
  2. Build a comparison table: step, who described it, what they said, and whether accounts agree, conflict, or are silent.
  3. Flag each inconsistency by type: sequence, ownership, timing, approval, documentation, or system used.
  4. For each conflict, note which version is riskier and what evidence would resolve it.
  5. List gaps where no interviewee described a step the control objective requires.
  6. Suggest up to five follow-up questions, each tied to a specific person and inconsistency.

Output format — A short summary, then a markdown table of steps and accounts, then a numbered list of inconsistencies with risk note and evidence needed, then gaps, then follow-up questions. Keep it under 700 words. Neutral, factual tone. No conclusions about fraud or blame.

Guardrails — Do not invent quotes, names, or details not in the notes; mark anything uncertain as an assumption. Do not treat disagreement as wrongdoing, only as a control or documentation issue. Tell the user when a finding needs a licensed professional, a local regulation, or a manufacturer manual to confirm.

Example — process_name: Purchase order approval; interviews: AP clerk, procurement manager, controller; control_objectives: all POs over threshold approved before order; risk_focus: unauthorised spend; audit_scope: FY2025, UK entity.

Open as its own page