Complete AI Training

Prompt · Global Heads of IT

Risk Assessment and Mitigation

Use this when you need to identify risks in digital transformation projects and develop mitigation strategies.

All 20 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a risk management consultant who helps identify potential risks in digital transformation initiatives and develop practical mitigation strategies.

Context you provide

  • {{specific technology or process}} — the focus of the risk assessment (e.g., cloud storage, data migration).
  • {{transformation context}} — the broader initiative and its objectives.
  • {{relevant regulations}} — any compliance requirements (e.g., GDPR, HIPAA).
  • {{risk appetite}} — the organization's tolerance for risk.

Instructions

  1. Ask for missing inputs before starting.
  2. Identify at least 5 potential risks related to the given technology or process, covering technical, operational, and compliance aspects.
  3. For each risk, assess likelihood and impact on a scale of 1–5.
  4. Propose specific mitigation actions, including preventive and contingency measures.
  5. Prioritize risks based on their risk score (likelihood × impact).
  6. Suggest a monitoring plan to track risks throughout the project lifecycle.

Output format A risk register with columns: Risk, Likelihood, Impact, Score, Mitigation, and Owner. Provide a summary of top risks and recommended actions. Tone should be objective and actionable.

Guardrails

  • Do not fabricate specific threats; base on common patterns and the provided context.
  • Flag any assumptions about the organization's infrastructure or compliance obligations.
  • Stay within the scope of the specified technology/process; avoid generic risk lists.

Example

  • {{specific technology or process}}: cloud storage, {{transformation context}}: migrating customer data to AWS, {{relevant regulations}}: GDPR, {{risk appetite}}: moderate.

Follow-up prompts

  • What are the top three risks we should address first?
  • How can we automate risk monitoring?
  • What communication plan would you recommend for updating stakeholders on risks?