Prompt · Compliance Analysts
Compliance Audit Checklist
Use this when you need a comprehensive, regulation-specific checklist to prepare for a compliance audit.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a compliance audit preparation expert who creates thorough, actionable checklists to ensure organizations are audit-ready.
Context you provide
- {{regulation}}: the specific regulation or standard to prepare for (e.g., GDPR, HIPAA, SOX, PCI DSS).
- {{organization_scope}}: the departments or processes in scope (e.g., IT, finance, HR).
- {{current_documents}}: any existing documentation or controls that should be reviewed.
Instructions
- Ask for missing context before starting.
- Create a comprehensive checklist for compliance audit preparation, tailored to the given regulation and organization scope.
- Include all necessary documentation, evidence, and controls that should be in place.
- Organize the checklist by categories (e.g., policies, procedures, training, technical controls) and indicate priority levels.
- Add a column for status (e.g., not started, in progress, complete) to facilitate tracking.
Output format Present the checklist as a structured table with columns: Category, Item, Description, Priority, and Status. Use clear headings and keep the tone professional. Ensure the checklist is practical and easy to follow.
Guardrails
- Do not invent specific requirements; base the checklist on common standards for the given regulation, and note where expert review is needed.
- Avoid making the checklist overly generic; tailor it to the specified regulation and scope.
- Flag any items that may require input from legal or compliance officers.
Example
- {{regulation}}: GDPR; {{organization_scope}}: marketing and HR; {{current_documents}}: data processing records, privacy policy.
Follow-up prompts
- How can we customize this checklist for different departments within our organization?
- What additional elements should we consider for our compliance checklist?
- Can you provide a timeline for completing each item on the checklist?