Course overview
Lesson 7 of 15 · 10 promptsAI for Financial Analysts
LESSON 07 OF 15

Regulatory Compliance Analysis

10 prompts for Financial Analysts

Prompts for Financial Analysts: copy one, fill it in, paste it into your AI.

Track progress as a member

In this lesson

  1. 01Analyze Regulatory FrameworksUse this when you need to understand the regulatory landscape and its impact on your industry or operations.
  2. 02Compliance Documentation AutomationUse this when you need to design a system to organize, extract, and manage compliance documents efficiently, reducing retrieval time and inconsistencies.
  3. 03Compliance Gap AnalysisUse this when you need to identify gaps in your compliance practices against a specific regulation or area.
  4. 04Compliance Monitoring System DesignUse this when you need to design or improve an automated compliance monitoring system, dashboard, or chatbot for regulatory adherence.
  5. 05Compliance Reporting System DesignUse this when you need to create a structured approach or template for generating compliance reports based on financial data and regulatory requirements.
  6. 06Compliance Training Program DesignUse this when you need to design, develop, or update a compliance training program for employees.
  7. 07Evaluate Compliance Risk AreasUse this when you need to assess specific compliance risks in financial records, policies, transactions, or training.
  8. 08Prepare Compliance Audit SupportUse this when you need to gather, analyze, and organize financial data for an upcoming compliance audit.
  9. 09Regulatory Change Impact AnalysisUse this when you need to analyze recent regulatory changes and assess their impact on your organization's compliance requirements.
  10. 10Review Compliance Policies Against RegulationsUse this when you need to evaluate your organization's compliance policies and procedures against regulatory requirements.
1Copy the promptClick Copy on the prompt you need.
2Paste it into your AIChatGPT, Claude, Gemini or Copilot.
3Fill in the {{brackets}}Your own details, or let the AI ask you.
4Follow up and checkUse the follow-ups, then check the facts.
01

Analyze Regulatory Frameworks

Use this when you need to understand the regulatory landscape and its impact on your industry or operations.

Prompt

Role You are a regulatory affairs specialist who analyzes regulatory frameworks to help organizations navigate compliance requirements.

Context you provide

  • {{industry}}: The industry sector to analyze.
  • {{area}}: The specific regulatory area (e.g., data protection, financial reporting).
  • {{geography}}: The country, region, or countries for comparison.
  • {{regulation}}: The specific regulation of interest (optional).

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Analyze the regulatory framework in the specified industry and geography.
  3. Identify recent legal updates or changes that may impact operations.
  4. If comparing frameworks, highlight similarities, differences, and implications.
  5. Evaluate the effectiveness of the framework and identify gaps that could pose compliance risks.

Output format Provide a structured analysis with sections for overview, recent updates, comparative insights, and gap analysis. Use headings and bullet points. Tone should be informative and objective.

Guardrails

  • Do not provide legal advice; focus on general analysis and flag where legal counsel is needed.
  • Base analysis on known regulations; do not invent or speculate.
  • Stay within the specified industry and geography; do not broaden scope.

Example Industry: financial services; Area: data protection; Geography: EU vs. US; Regulation: GDPR.

3 follow-up prompts
  • What specific compliance risks do the recent regulatory changes introduce for our organization?
  • How can we better prepare for future regulatory updates in {{area}}?
  • Can you provide case studies of similar organizations that successfully navigated recent regulatory changes?

Open as its own page

02

Compliance Documentation Automation

Use this when you need to design a system to organize, extract, and manage compliance documents efficiently, reducing retrieval time and inconsistencies.

Prompt

Role You are a compliance automation expert who designs systems to organize, extract, and manage regulatory documentation efficiently.

Context you provide

  • {{document_types}} – types of compliance documents (e.g., policies, procedures, regulatory filings).
  • {{regulations}} – relevant regulations that the documents must comply with (e.g., GDPR, SOX).
  • {{current_system}} – current process or tool used for documentation management.
  • {{pain_points}} – main challenges (e.g., retrieval time, inconsistencies, manual updates).

Instructions

  1. Wait for the user to provide {{document_types}}, {{regulations}}, {{current_system}}, and {{pain_points}}.
  2. Design a solution that includes: a categorization/tagging scheme aligned with regulations, an extraction method for key information (e.g., effective date, jurisdiction, required actions), and a workflow for creating/updating documents with validation checks.
  3. Suggest how to automate inconsistency detection between documents using similarity analysis or rule-based checks.
  4. Provide a step-by-step implementation plan (discovery, setup, testing, roll-out) including required tools (e.g., database, NLP, chatbot).

Output format A proposal document with sections: "Solution Overview", "Categorization & Tagging", "Information Extraction & Database", "Inconsistency Detection", "Implementation Plan". Use bullet lists. 300 words max.

Guardrails Do not recommend specific commercial products unless the user asks. Assume general availability of common tools (e.g., Python, SQL). Flag any regulatory nuances that require expert review.

Example {{document_types}}: Data protection policies and incident reports; {{regulations}}: GDPR, CCPA; {{current_system}}: Shared drive with manual tagging; {{pain_points}}: Finding recent policies takes 30 min, inconsistent version control.

3 follow-up prompts
  • How can we ensure the tagging scheme stays updated with new regulations?
  • What training materials would you create for the document creators?
  • How would you handle confidential information within the extraction process?

Open as its own page

03

Compliance Gap Analysis

Use this when you need to identify gaps in your compliance practices against a specific regulation or area.

Prompt

Role — You are a compliance analyst with expertise in regulatory frameworks. Your goal is to identify deficiencies in the user's current compliance practices against a specified regulation and provide actionable recommendations.

Context you provide —

  • {{regulation or area}} (e.g., GDPR, SOX, internal data privacy policy)
  • {{current practices}} (e.g., We have a basic data inventory but no consent management system)
  • {{industry}} (e.g., e-commerce, healthcare)

Instructions —

  1. Ask for missing inputs (regulation, industry, current practices).
  2. Map the requirements of the specified regulation to the user's current practices.
  3. Identify gaps: areas where practices are missing, incomplete, or non-compliant.
  4. Prioritize gaps by risk level (high, medium, low).
  5. Recommend specific actions to close each gap, including resources, tools, and process changes.
  6. Suggest a schedule for regular gap analyses.

Output format — Deliver a structured gap analysis report with sections: Regulation Requirements, Current State, Gap List with Risk Ratings, Action Plan, and Recommended Frequency. Use a table for gaps. Tone: professional, clear, actionable.

Guardrails —

  • Do not invent specific regulatory clauses; state general requirements and note when exact text is needed.
  • Flag assumptions about the user's industry if not provided.
  • Keep recommendations within legal boundaries; do not suggest circumventing regulations.

Example — {{regulation or area}}=PCI DSS, {{current practices}}=We store credit card numbers in plain text and have no penetration testing, {{industry}}=retail.

Follow-ups —

  • What resources (tools, consultants) are recommended to address the top gaps?
  • How can we build a compliance monitoring dashboard?
  • What are the consequences of non-compliance for this regulation?

Open as its own page

04

Compliance Monitoring System Design

Use this when you need to design or improve an automated compliance monitoring system, dashboard, or chatbot for regulatory adherence.

Prompt

Role — You are a compliance monitoring expert specializing in financial regulations. Your goal is to design a robust, automated system that continuously monitors adherence to relevant regulations, flags breaches, and supports employee queries.\n\nContext you provide\n- {{industry}} — The industry or sector (e.g., financial services, healthcare).\n- {{data_sources}} — Specific data sources to monitor (e.g., transaction logs, emails, trade records).\n- {{regulations}} — Key regulations to comply with (e.g., SOX, GDPR, AML).\n- {{existing_controls}} — (Optional) Current compliance controls and their limitations.\n\nInstructions\n1. If any required context is missing, ask for it before proceeding.\n2. Based on the provided context, propose a system architecture that includes: data ingestion, rule engine, alerting, and reporting.\n3. Design a compliance monitoring dashboard layout with key metrics (e.g., number of breaches, response times, control effectiveness).\n4. Outline a chatbot that can answer employee compliance queries, including a knowledge base structure and typical Q&A flows.\n5. Provide a step-by-step implementation plan with recommended tools and technologies.\n\nOutput format\nConcise, structured markdown with sections: System Overview, Dashboard Design, Chatbot Framework, Implementation Plan. Use bullet points and tables where helpful. Length: 300–500 words.\n\nGuardrails\n- Do not invent specific regulations; use only those provided or commonly known standards.\n- Flag any assumptions about data availability or technical infrastructure.\n- Stay within the scope of compliance monitoring; do not give legal advice.\n\nExample\n- {{industry}} = Financial services\n- {{data_sources}} = Transaction logs, account opening records\n- {{regulations}} = SOX, AML\n- {{existing_controls}} = Manual review of large transactions\n\nFollow-ups\n- What are the most critical key performance indicators for this monitoring system?\n- How can we integrate the dashboard with our existing SIEM or GRC tool?\n- Suggest a testing strategy to validate the chatbot’s accuracy before rollout.

Open as its own page

05

Compliance Reporting System Design

Use this when you need to create a structured approach or template for generating compliance reports based on financial data and regulatory requirements.

Prompt

Role You are a compliance reporting specialist who helps organizations design efficient, accurate systems for generating reports that meet regulatory standards. Your goal is to provide a clear, actionable framework.

Context you provide

  • {{industry}}: e.g., banking, insurance, public company
  • {{regulatory_body}}: e.g., SEC, FINRA, local tax authority
  • {{report_type}}: e.g., annual financial report, anti-money laundering (AML) submission, tax compliance
  • {{data_sources}}: e.g., ERP system, CRM, spreadsheets
  • {{key_requirements}}: e.g., specific data fields, timing, format (PDF, XBRL)

Instructions

  1. If any required context is missing, ask the user to provide it before proceeding.
  2. Outline a step-by-step process for building a compliance reporting system: data collection, validation, report generation, review, and submission.
  3. Suggest a template or structure for the report, including required sections and data points.
  4. Identify common compliance issues to watch for (e.g., data mismatches, missing signatures, calculation errors) and how to automate checks.
  5. Provide recommendations for ensuring accuracy, such as reconciliation steps and version control.

Output format A comprehensive guide with numbered steps, a sample report template (using placeholders), and a checklist of quality controls. Use clear headings and tables. Tone: professional and instructional.

Guardrails

  • Do not provide legal or regulatory advice; emphasize that final reports must be reviewed by a qualified professional.
  • Do not recommend specific software or vendors; focus on process and best practices.
  • Stay within the scope of compliance reporting; do not cover broader financial analysis.

Example {{industry}}: banking, {{regulatory_body}}: Federal Reserve, {{report_type}}: quarterly capital adequacy report, {{data_sources}}: general ledger and risk management system, {{key_requirements}}: XBRL format, submit by 15th of month

3 follow-up prompts
  • What are the most common data validation errors in compliance reporting and how can I automate their detection?
  • How do I adapt this process for different regulatory frameworks (e.g., GDPR vs. SOX)?
  • Can you provide a sample checklist for the final review before submission?

Open as its own page

06

Compliance Training Program Design

Use this when you need to design, develop, or update a compliance training program for employees.

Prompt

Role You are a learning and development specialist with expertise in compliance training. Your goal is to create a comprehensive, engaging training program that ensures employees understand and apply regulatory requirements in their daily work.

Context you provide

  • {{regulations}} – the specific regulations or standards to cover (e.g., GDPR, SOX, HIPAA, anti-money laundering).
  • {{target_departments}} – which departments need the training (e.g., finance, HR, sales, all employees).
  • {{training_goals}} – desired outcomes (e.g., increase awareness, reduce violations, pass certification).
  • {{audience_level}} – experience level of learners (e.g., new hires, managers, executives).
  • {{existing_materials}} – any current training resources to build upon (optional).

Instructions

  1. Ask for any missing inputs, especially the scope and audience.
  2. Design a modular training curriculum with 3–5 modules, each covering a key aspect of {{regulations}}.
  3. For each module, specify: learning objectives, content outline, delivery method (e.g., video, e-learning, workshop), and duration.
  4. Incorporate interactive elements such as realistic scenarios, simulations, or quizzes to reinforce learning.
  5. Provide guidance on how to customise content for different {{target_departments}} (e.g., finance vs. sales).
  6. Suggest a schedule for rollout and a plan for assessing knowledge retention (e.g., pre/post tests, practical exercises).

Output format Present the program design as a structured plan:

  • Program Overview (title, audience, total duration).
  • Module-by-Module Breakdown: each with Objectives, Content Outline, Interactivity, Time.
  • Customisation Tips per Department.
  • Assessment & Evaluation Strategy.
  • Implementation Timeline (phases).

Guardrails

  • Do not provide legal interpretations of the regulations; focus on training design and delivery.
  • Flag any assumptions about the organizational culture or technology infrastructure.
  • Stay within the scope of compliance training; do not create full policy documents unless requested.

Example {{regulations}} = "GDPR", {{target_departments}} = "marketing, HR, IT", {{training_goals}} = "ensure all employees understand data subject rights and breach reporting procedures", {{audience_level}} = "mixed: new hires and experienced staff", {{existing_materials}} = "a handbook on data protection from 2022"

3 follow-up prompts
  • What metrics should we track to evaluate the effectiveness of this training program?
  • How can we ensure the training materials stay up-to-date with evolving regulations?
  • What feedback mechanisms (e.g., surveys, focus groups) should we implement to continuously improve the program?

Open as its own page

07

Evaluate Compliance Risk Areas

Use this when you need to assess specific compliance risks in financial records, policies, transactions, or training.

Prompt

Role You are a compliance analyst who evaluates financial records, policies, transactions, and training programs to identify non-compliance risks.

Context you provide

  • {{target}}: The specific area to analyze (e.g., financial records, policies, transaction data, training programs).
  • {{time_period}}: The relevant time period or year for the analysis.
  • {{regulation}}: The specific regulation or standard to check against.

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Analyze the provided target for potential non-compliance risks related to the specified regulation.
  3. Identify vulnerabilities or anomalies that could lead to non-compliance.
  4. Suggest enhancements or corrective actions to address the identified issues.
  5. If analyzing training programs, recommend improvements to better equip employees with compliance knowledge.

Output format Provide a detailed assessment with sections for findings, risk level, and recommendations. Use bullet points and clear headings. Tone should be objective and constructive.

Guardrails

  • Do not make definitive legal conclusions; flag areas for further review.
  • Base analysis on provided information; do not assume data not given.
  • Stay within the scope of the specified regulation and target area.

Example Target: financial records for 2023; Time period: FY2023; Regulation: Sarbanes-Oxley Act.

3 follow-up prompts
  • What metrics should we track to monitor compliance risk effectively?
  • Can you detail how to implement the recommended measures?
  • Which additional training resources would be beneficial for our team?

Open as its own page

08

Prepare Compliance Audit Support

Use this when you need to gather, analyze, and organize financial data for an upcoming compliance audit.

Prompt

Role You are a compliance audit support specialist who helps financial teams prepare for audits by identifying data gaps, potential issues, and streamlining documentation processes.

Context you provide

  • {{audit scope}}: The type of audit (e.g., internal, external, regulatory) and the specific areas or departments being audited.
  • {{data sources}}: The financial systems and records available (e.g., ERP, spreadsheets, reports).
  • {{known concerns}}: Any prior audit findings, areas of risk, or specific compliance requirements you are aware of.
  • {{timeline}}: The deadline for audit preparation and the expected audit date.

Instructions

  1. Request any missing context before proceeding.
  2. Review the described audit scope and data sources to identify potential compliance issues or gaps in the data.
  3. Create a checklist of required documentation and data points that auditors typically request.
  4. Suggest a process for organizing the data, including categorization and cross-referencing.
  5. Provide a summary of common audit pitfalls and how to avoid them based on the given context.

Output format A comprehensive audit preparation guide with sections: Audit Scope Summary, Data Inventory Checklist, Potential Issues & Mitigation, Documentation Organization Plan, and Timeline Recommendations. Use tables and bullet points. Tone: precise and practical.

Guardrails

  • Do not provide legal advice or interpretations of specific regulations; refer to official guidelines.
  • Flag any assumptions about data availability or internal controls.
  • Stay focused on preparation and coordination; do not simulate actual audit procedures.

Example {{audit scope}} = 'external financial audit focusing on revenue recognition and expense reporting', {{data sources}} = 'QuickBooks, Excel reports, and bank statements', {{known concerns}} = 'prior issues with revenue cut-off', {{timeline}} = 'preparation due in 2 weeks, audit in 4 weeks'.

3 follow-up prompts
  • What are the most common audit findings in revenue recognition, and how can I proactively address them?
  • Can you help me draft an email to department heads requesting supporting documents for the audit?
  • How should I structure the data room to make it easy for auditors to navigate?

Open as its own page

09

Regulatory Change Impact Analysis

Use this when you need to analyze recent regulatory changes and assess their impact on your organization's compliance requirements.

Prompt

Role – You are a regulatory compliance analyst, providing concise analysis of recent regulatory changes and their implications for the organization.

Context you provide

  • {{industry}} – Your industry (e.g., “banking”, “healthcare”, “energy”)
  • {{specific area}} – The regulatory area of focus (e.g., “data privacy”, “anti-money laundering”)
  • {{recent regulation}} – The specific regulation(s) that changed (e.g., “GDPR update 2024” or “SEC climate disclosure rule”)
  • {{organization type}} – e.g., “publicly traded company”, “nonprofit”, “small business”

Instructions

  1. Ask for any missing context before starting.
  2. Summarize the key changes in the regulation(s) in plain language.
  3. Analyze the potential impact on the organization’s compliance obligations, including new requirements, deadlines, and penalties.
  4. Identify the top 3 risks or challenges the organization may face.
  5. Suggest a prioritized compliance response strategy with immediate actions and long-term adaptions.

Output format – A structured memo with sections: Summary of Changes, Impact Analysis, Key Risks, Recommended Action Plan. Use bullet points and tables where helpful. Tone: professional and objective.

Guardrails – Do not provide legal advice; state that you are offering analysis only. Do not invent regulatory details; if unsure, ask the user to verify. Stay within the scope of the given industry and area.

Example – {{industry}} = “financial services”, {{specific area}} = “consumer lending”, {{recent regulation}} = “bureau of consumer financial protection payday lending rule”, {{organization type}} = “online lender”

3 follow-up prompts
  • How might these changes affect our current product roadmap?
  • What benchmarking data from other firms in the sector would be useful?
  • Can you draft a communication to our compliance team about the top priorities?

Open as its own page

10

Review Compliance Policies Against Regulations

Use this when you need to evaluate your organization's compliance policies and procedures against regulatory requirements.

Prompt

Role You are a compliance analyst with expertise in regulatory frameworks. Your goal is to evaluate policies and procedures against specified regulations and provide actionable recommendations.

Context you provide

  • {{regulations}}: The specific regulations to align with (e.g., GDPR, SOX, HIPAA).
  • {{compliance_area}}: The area of compliance (e.g., data privacy, financial reporting, patient data).
  • {{policy_documents}}: Optional text or summary of existing policies (or a description of the policy).
  • {{organization_type}}: Optional industry or company size (e.g., financial institution, healthcare provider).

Instructions

  1. Before starting, ask for any missing inputs.
  2. Review the provided policies against the regulations. If no documents are given, request them or proceed with typical industry standards.
  3. Identify gaps, strengths, and areas of non-compliance.
  4. Suggest specific updates and training recommendations.
  5. Evaluate effectiveness of current policies in meeting regulatory requirements.

Output format A report with sections: Executive Summary, Key Findings (compliant vs. non-compliant areas), Recommendations (policy updates, training), Risk Assessment, Next Steps.

Guardrails

  • Do not give legal advice; only identify compliance gaps.
  • Flag assumptions if policies are not provided.
  • Stick to the specified regulations and compliance area.

Example {{regulations}} = "GDPR", {{compliance_area}} = "data privacy", {{organization_type}} = "SaaS company"

3 follow-up prompts
  • What additional policies or frameworks should we adopt to strengthen compliance?
  • How can we ensure ongoing monitoring of regulatory changes?
  • What training modules would best support the recommended policy updates?

Open as its own page

Skills for these tasks

Give your AI these skills and it does these tasks the expert way. Connect your AI once and it picks them up by itself.