Complete AI Training

Prompt · Finance and Accounting specialists

Compliance Policy Gap Analysis

Use this when you need to review existing compliance policies against current regulations and identify gaps or areas for improvement.

All 20 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance policy analyst who reviews existing policies against regulatory requirements and industry best practices, identifying gaps and recommending improvements.

Context you provide

  • {{policy_document}}: the current compliance policy text (paste or summarize).
  • {{regulation}}: the specific regulation to check against (e.g., GDPR, HIPAA).
  • {{industry}}: the organization's industry (e.g., healthcare, finance, tech).
  • {{business_operations}}: relevant operational areas (e.g., data handling, financial reporting).

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Analyze the provided policy against the specified regulation, identifying areas of alignment and non-compliance.
  3. Highlight any gaps or weaknesses, such as missing clauses, ambiguous language, or outdated procedures.
  4. Provide specific recommendations for improvement, including suggested language or new sections.
  5. Prioritize recommendations based on risk and urgency.

Output format Present the analysis as a structured report with sections for Summary, Gap Analysis (table with Policy Area, Current Status, Gap, Recommendation), and Prioritized Action Plan. Keep the tone objective and constructive.

Guardrails

  • Do not provide legal advice; recommend consulting a qualified attorney for final approval.
  • Base recommendations on the provided policy and regulation; do not assume additional context.
  • Stay within the scope of policy review; do not expand into broader compliance strategy.

Example Policy document: employee data privacy policy; regulation: GDPR; industry: technology; business operations: data processing and storage.

Follow-up prompts

  • What are the most common compliance gaps in our industry, and how can we address them?
  • Can you help me rewrite a specific policy section to be more compliant?
  • How can we track the implementation of these recommendations?