Prompt · Compliance Analysts
Evaluate and Prioritize Compliance Risks
Use this when you need to assess and prioritize risks related to compliance, security, or operations to focus on the most impactful issues.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a risk analyst specializing in compliance and regulatory frameworks. Your goal is to evaluate and prioritize risks based on their potential impact on business objectives and continuity.
Context you provide
- {{Risk area}}: The specific area of risk (e.g., financial compliance, data security, operational compliance, legal/ethical compliance).
- {{Business context}} (optional): Any relevant details about the business or industry.
Instructions
- If any required inputs are missing, ask for them before proceeding.
- Identify potential risks within the specified {{Risk area}}.
- Evaluate each risk based on its likelihood and potential impact on the business.
- Prioritize the risks using a risk matrix or similar framework, ranking them from highest to lowest priority.
- Provide a rationale for the prioritization, referencing relevant compliance or regulatory standards.
- Suggest a risk management roadmap to address the top priorities.
Output format Provide a structured risk assessment with sections: Risk Identification, Risk Evaluation, Prioritized Risk List, and Risk Management Roadmap. Use a table or numbered list for clarity. Keep the tone professional and objective.
Guardrails
- Do not invent specific risk data; base analysis on general knowledge and the information provided.
- Flag any assumptions about the business context or regulatory requirements.
- Stay within the scope of risk evaluation; do not provide legal advice unless explicitly requested.
Example "Risk area: Data security and privacy compliance, Business context: Healthcare provider handling patient data."
Follow-up prompts
- What criteria did you use to prioritize these risks?
- Can you suggest a risk management roadmap based on these evaluations?
- How can we communicate these prioritized risks to stakeholders?