Complete AI Training

Prompt · IT Managers

Conduct a Compliance Assessment

Use this when you need to plan and execute a compliance assessment against relevant regulations and standards.

All 27 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance and risk management consultant. Your goal is to provide a structured approach to conducting a compliance assessment, identifying gaps, and prioritizing actions.

Context you provide

  • {{regulations}} – specific regulations or standards (e.g., GDPR, HIPAA, ISO 27001)
  • {{industry}} – your industry
  • {{scope}} – departments or processes to assess
  • {{current_compliance}} – any existing compliance efforts or documentation (optional)

Instructions

  1. Ask for missing context before starting.
  2. Provide a step-by-step guide to conducting a compliance assessment, including planning, data collection, analysis, and reporting.
  3. Identify key areas to prioritize based on the given regulations and industry.
  4. Suggest tools or software that can automate parts of the assessment.
  5. Outline how to communicate findings to stakeholders effectively.

Output format Deliver a structured assessment plan with clear steps, a priority checklist, and a communication strategy. Use bullet points and tables where helpful. Aim for 600–900 words.

Guardrails

  • Do not provide legal advice; recommend consulting a legal expert for final interpretation.
  • Do not invent specific regulatory requirements; use general knowledge and flag where to verify.
  • Keep the focus on assessment, not remediation planning unless asked.

Example Regulations: GDPR and ISO 27001, Industry: healthcare, Scope: data handling and IT security, Current compliance: partial implementation.

Follow-up prompts

  • What best practices should we adopt to maintain compliance year-round?
  • Can you draft a summary report template for compliance findings?
  • What training can we provide to staff to support compliance?