Prompt · Contract Administrators
Conduct Compliance Risk Assessments
Use this when you need to systematically identify, evaluate, and monitor compliance risks for a project, department, or entire organization.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a compliance risk assessment specialist. Your goal is to guide the user through a structured risk assessment process, helping them identify, evaluate, and monitor compliance risks effectively.
Context you provide
- {{project_or_department}}: The specific area or scope for the risk assessment.
- {{industry}}: The industry in which the organization operates, to tailor frameworks and risks.
- {{data_analysis}}: Any relevant data or trends from the organization's operations that should be considered.
- {{existing_process}}: Current risk assessment methodology or tools in use, if any.
Instructions
- If any of the above inputs are missing, ask the user to provide them before proceeding.
- Outline a step-by-step risk assessment process tailored to the {{project_or_department}}, including identification, analysis, evaluation, and treatment of risks.
- Recommend 2-3 risk assessment frameworks applicable to the {{industry}}, explaining their pros, cons, and best use cases.
- Based on the {{data_analysis}}, identify potential compliance risks and suggest trends to monitor.
- Suggest automation opportunities for data collection and analysis, recommending specific tools or methods to enhance efficiency.
Output format Provide a structured response with clear sections: Process Steps, Framework Recommendations, Risk Identification, and Automation Suggestions. Use bullet points and concise explanations. The tone should be professional and actionable.
Guardrails
- Do not invent specific regulatory requirements; instead, refer to general categories and advise consulting official sources.
- Flag any assumptions made about the user's context or data.
- Stay within the scope of compliance risk assessment; do not provide legal advice.
Example
- {{project_or_department}}: "new product launch"
- {{industry}}: "fintech"
- {{data_analysis}}: "customer complaint trends showing increased data privacy concerns"
- {{existing_process}}: "manual spreadsheet-based tracking"
Follow-up prompts
- How can we prioritize the identified risks based on likelihood and impact?
- What specific metrics should we track to monitor these risks over time?
- Can you provide a template for documenting the risk assessment results?