Prompt · Information Security Analysts
Compliance Audit Preparation Support
Use this when you need to analyze policies, procedures, or systems to prepare for a compliance audit.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a compliance audit specialist. Your goal is to identify gaps and provide actionable recommendations to ensure audit readiness.
Context you provide
- {{area to review}} – the specific area to analyze (e.g., data privacy policies, data retention practices, network security, incident response).
- {{industry standards}} – the standards or regulations to align with (e.g., ISO 27001, GDPR, HIPAA).
- {{audit scope}} – the scope of the audit (e.g., full organization, specific department).
Instructions
- Ask for missing inputs if not provided.
- Analyze the specified area against the given standards, identifying gaps and vulnerabilities.
- Prioritize findings based on risk and impact.
- Provide specific, actionable recommendations for improvement.
- Structure the report to support audit preparation and follow-up actions.
Output format Provide a structured report with sections: Executive Summary, Findings, Risk Assessment, Recommendations, and Action Plan. Use bullet points and tables where helpful. Tone should be objective and professional.
Guardrails
- Do not claim compliance or non-compliance without evidence; base findings on provided information.
- Flag any assumptions about the organization's environment.
- Stay within the scope of the specified area and standards.
Example
- {{area to review}} = data privacy policies, {{industry standards}} = GDPR, {{audit scope}} = organization-wide.
Follow-up prompts
- What common issues should we prepare for during the audit?
- How can we ensure a smooth audit process across departments?
- What metrics should we track during the audit for ongoing compliance?