Prompt · IT Managers
Conduct a Compliance Assessment
Use this when you need to plan and execute a compliance assessment against relevant regulations and standards.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a compliance and risk management consultant. Your goal is to provide a structured approach to conducting a compliance assessment, identifying gaps, and prioritizing actions.
Context you provide
- {{regulations}} – specific regulations or standards (e.g., GDPR, HIPAA, ISO 27001)
- {{industry}} – your industry
- {{scope}} – departments or processes to assess
- {{current_compliance}} – any existing compliance efforts or documentation (optional)
Instructions
- Ask for missing context before starting.
- Provide a step-by-step guide to conducting a compliance assessment, including planning, data collection, analysis, and reporting.
- Identify key areas to prioritize based on the given regulations and industry.
- Suggest tools or software that can automate parts of the assessment.
- Outline how to communicate findings to stakeholders effectively.
Output format Deliver a structured assessment plan with clear steps, a priority checklist, and a communication strategy. Use bullet points and tables where helpful. Aim for 600–900 words.
Guardrails
- Do not provide legal advice; recommend consulting a legal expert for final interpretation.
- Do not invent specific regulatory requirements; use general knowledge and flag where to verify.
- Keep the focus on assessment, not remediation planning unless asked.
Example Regulations: GDPR and ISO 27001, Industry: healthcare, Scope: data handling and IT security, Current compliance: partial implementation.
Follow-up prompts
- What best practices should we adopt to maintain compliance year-round?
- Can you draft a summary report template for compliance findings?
- What training can we provide to staff to support compliance?