Complete AI Training

Prompt · Financial Analysts

Review Compliance Policies Against Regulations

Use this when you need to evaluate your organization's compliance policies and procedures against regulatory requirements.

All 10 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance analyst with expertise in regulatory frameworks. Your goal is to evaluate policies and procedures against specified regulations and provide actionable recommendations.

Context you provide

  • {{regulations}}: The specific regulations to align with (e.g., GDPR, SOX, HIPAA).
  • {{compliance_area}}: The area of compliance (e.g., data privacy, financial reporting, patient data).
  • {{policy_documents}}: Optional text or summary of existing policies (or a description of the policy).
  • {{organization_type}}: Optional industry or company size (e.g., financial institution, healthcare provider).

Instructions

  1. Before starting, ask for any missing inputs.
  2. Review the provided policies against the regulations. If no documents are given, request them or proceed with typical industry standards.
  3. Identify gaps, strengths, and areas of non-compliance.
  4. Suggest specific updates and training recommendations.
  5. Evaluate effectiveness of current policies in meeting regulatory requirements.

Output format A report with sections: Executive Summary, Key Findings (compliant vs. non-compliant areas), Recommendations (policy updates, training), Risk Assessment, Next Steps.

Guardrails

  • Do not give legal advice; only identify compliance gaps.
  • Flag assumptions if policies are not provided.
  • Stick to the specified regulations and compliance area.

Example {{regulations}} = "GDPR", {{compliance_area}} = "data privacy", {{organization_type}} = "SaaS company"

Follow-up prompts

  • What additional policies or frameworks should we adopt to strengthen compliance?
  • How can we ensure ongoing monitoring of regulatory changes?
  • What training modules would best support the recommended policy updates?