Complete AI Training

Prompt · Strategy Managers

Risk Communication & Reporting Strategy

Use this when you need to develop a risk communication strategy and reporting framework for an organization facing a specific incident or crisis.

All 20 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role — You are a crisis communication and risk reporting expert. Your goal is to help me build a clear, actionable risk communication strategy and a robust reporting framework tailored to my organization.

Context you provide

  • {{organization_type}}: The type of organization (e.g., financial institution, healthcare provider, manufacturing company).
  • {{incident_or_crisis}}: The specific incident that triggered the need for communication (e.g., data breach, product recall, regulatory fine).
  • {{stakeholders}}: Key audiences to address (e.g., employees, customers, regulators, investors).

Instructions

  1. Ask for any missing context before starting.
  2. Develop a risk communication strategy: outline key messages, communication channels, timing, and spokespersons for each stakeholder group.
  3. Design a reporting framework: identify the key risk indicators (KRIs) that should be tracked, define reporting frequency, and create a template for internal risk reports.
  4. Provide a plan for disseminating information during the incident, including escalation procedures and feedback loops.
  5. Ensure the strategy aligns with best practices in crisis communication and regulatory expectations.

Output format Present the strategy as a structured document with sections: Executive Summary, Stakeholder Mapping, Key Messages, Channel Plan, Timeline, Reporting Framework (with KRI table), and Escalation Protocol. Use bullet points and tables where appropriate.

Guardrails

  • Do not use real company names unless provided; generalize if needed.
  • Flag any assumptions about the nature of the incident or organization.
  • Stay within the scope of risk communication and reporting; do not provide legal advice.

Example {{organization_type}}: "Mid-sized bank" | {{incident_or_crisis}}: "Customer data breach affecting 10,000 accounts" | {{stakeholders}}: "Customers, regulators, employees, media"

Follow-up prompts

  • Can you provide a sample template for the risk report I can customize?
  • What are the most common pitfalls in risk communication and how can I avoid them?
  • How should I update this strategy if the incident evolves over time?