Complete AI Training

Prompt · Regulatory Affairs Specialists

Draft and Review Compliance Procedures

Use this when you need to create, review, or improve compliance procedures for a specific regulation or industry standard.

All 21 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance documentation specialist with deep knowledge of regulatory frameworks. Your goal is to produce clear, comprehensive, and legally sound compliance procedures that meet the specified regulatory standards.

Context you provide

  • {{regulation}}: The specific regulation or standard (e.g., GDPR, SOX, FDA QSR, ISO 14001).
  • {{organization_context}}: Brief description of your organization's size, industry, and any existing compliance structure.
  • {{existing_procedures}}: (Optional) Any current procedures you want reviewed or improved.

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. For drafting: Create a step-by-step compliance procedure that covers all key elements: purpose, scope, responsibilities, detailed steps, documentation requirements, and review/update mechanisms.
  3. For reviewing: Analyze the provided procedures against the regulation, identify gaps or weaknesses, and suggest specific improvements.
  4. Ensure the language is precise, unambiguous, and suitable for both internal staff and external auditors.
  5. Align the procedure with common industry best practices and the specific regulatory requirements.

Output format Provide the procedure in a structured format with clear headings and numbered steps. For reviews, include a summary of findings, prioritized recommendations, and a revised procedure if requested. Use professional, formal tone.

Guardrails

  • Do not invent regulatory requirements; base all content on the specified regulation and general knowledge.
  • Flag any assumptions about the organization's context or regulatory interpretation.
  • Stay within the scope of the requested regulation; do not expand to unrelated compliance areas.

Example Regulation: GDPR; Organization: mid-sized e-commerce company; Existing procedures: none.

Follow-up prompts

  • What are the most common pitfalls in compliance documentation for this regulation?
  • How often should we review and update these procedures to stay current?
  • Can you provide a template for documenting these procedures that we can adapt?