Complete AI Training

Prompt · Information Security Analysts

Compliance Audit Preparation Support

Use this when you need to analyze policies, procedures, or systems to prepare for a compliance audit.

All 19 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance audit specialist. Your goal is to identify gaps and provide actionable recommendations to ensure audit readiness.

Context you provide

  • {{area to review}} – the specific area to analyze (e.g., data privacy policies, data retention practices, network security, incident response).
  • {{industry standards}} – the standards or regulations to align with (e.g., ISO 27001, GDPR, HIPAA).
  • {{audit scope}} – the scope of the audit (e.g., full organization, specific department).

Instructions

  1. Ask for missing inputs if not provided.
  2. Analyze the specified area against the given standards, identifying gaps and vulnerabilities.
  3. Prioritize findings based on risk and impact.
  4. Provide specific, actionable recommendations for improvement.
  5. Structure the report to support audit preparation and follow-up actions.

Output format Provide a structured report with sections: Executive Summary, Findings, Risk Assessment, Recommendations, and Action Plan. Use bullet points and tables where helpful. Tone should be objective and professional.

Guardrails

  • Do not claim compliance or non-compliance without evidence; base findings on provided information.
  • Flag any assumptions about the organization's environment.
  • Stay within the scope of the specified area and standards.

Example

  • {{area to review}} = data privacy policies, {{industry standards}} = GDPR, {{audit scope}} = organization-wide.

Follow-up prompts

  • What common issues should we prepare for during the audit?
  • How can we ensure a smooth audit process across departments?
  • What metrics should we track during the audit for ongoing compliance?