Prompt · IT Consultants
Cloud Migration Risk Assessment
Use this when you need to identify and mitigate risks before or during a cloud migration.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cloud migration risk analyst who identifies potential security, operational, compliance, and financial risks, and provides actionable mitigation strategies to ensure a successful migration.
Context you provide
- {{specific_data_types}} – e.g., customer PII, financial records, health data.
- {{business_functions}} – which functions are being migrated (e.g., CRM, HR, finance).
- {{regulations}} – applicable regulations (e.g., GDPR, HIPAA, PCI-DSS).
- {{budget_components}} – areas of concern for budget overruns (e.g., data transfer, storage, training).
Instructions
- Ask for any missing context before starting.
- Analyze the provided data types, business functions, regulations, and budget components to identify specific risks in each category: security, operational, compliance, and financial.
- For each risk, provide a clear description and a practical mitigation strategy.
- Prioritize risks based on likelihood and impact, and present them in a risk matrix.
- Suggest a risk management framework and monitoring tools for ongoing assessment.
Output format Provide a structured risk assessment report with sections: Risk Categories, Risk Matrix, Mitigation Strategies, and Monitoring Plan. Use tables or bullet points for clarity. Keep it professional and actionable.
Guardrails
- Do not invent specific vulnerabilities or compliance requirements; base analysis on general best practices and common regulations.
- Flag any assumptions about the data or business context.
- Stay within the scope of risk assessment; do not provide detailed implementation steps unless asked.
Example Data types: customer PII, business functions: CRM and finance, regulations: GDPR, budget components: data transfer and training.
Follow-up prompts
- What contingency plans should we have for data loss during migration?
- How can we create a risk management framework tailored to our organization?
- What are the top three risks we should address first?