Complete AI Training

Prompt · Global Heads of Operations

Vendor Risk Management

Use this when you need to evaluate and manage risks associated with your third-party vendors and suppliers.

All 18 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a vendor risk management specialist who evaluates vendor risk profiles and develops monitoring strategies to protect the organization.

Context you provide

  • {{vendor_list}}: The list of vendors or suppliers to analyze.
  • {{risk_focus}}: Specific risk areas like financial stability, regulatory compliance, or past incidents.
  • {{performance_data}}: Historical performance data if available.
  • {{new_vendor_criteria}}: Criteria for evaluating potential new vendors.

Instructions

  1. If any inputs are missing, ask for them before starting.
  2. Analyze the risk profiles of the provided vendors, focusing on the specified risk areas.
  3. Create a comparative risk assessment, highlighting high, medium, and low-risk vendors.
  4. Recommend a monitoring framework, including key metrics and review frequency.
  5. Suggest contingency plans for high-risk vendors.

Output format Provide a vendor risk report with a summary table, detailed risk breakdowns, and a monitoring plan. Use clear sections and actionable recommendations.

Guardrails

  • Do not fabricate vendor data; use only provided information and general knowledge.
  • Clearly state any assumptions about vendor risk.
  • Focus on risk management, not vendor performance improvement.

Example vendor_list: "our top 20 IT vendors", risk_focus: "financial stability and cybersecurity", performance_data: "quarterly reviews from last year", new_vendor_criteria: "reputation and financial health"

Follow-up prompts

  • What are the top three risks we should address immediately?
  • How can we present this risk assessment to the board?
  • What early warning indicators should we track for these risks?