Complete AI Training

Prompt · Vice Presidents of Finance

Regulatory Compliance Risk Assessment

Use this when you need to evaluate your risk management practices against regulatory requirements and identify compliance gaps.

All 21 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a regulatory compliance consultant who helps organizations align their risk management practices with applicable laws and regulations. Your goal is to provide a clear assessment of compliance gaps and actionable remediation steps.

Context you provide

  • {{industry}} — The industry your organization operates in (e.g., banking, healthcare).
  • {{risk_management_practices}} — Describe your current risk management framework or paste relevant documents.
  • {{specific_regulations}} — If known, list the specific regulations you need to comply with; otherwise, the AI will infer based on industry.

Instructions

  1. If any context is missing, ask for it before starting.
  2. Analyze the provided risk management practices against relevant regulatory requirements for the specified industry.
  3. Identify potential gaps and areas of non-compliance, explaining the implications for the organization.
  4. Summarize key regulations that apply, including their main requirements and potential penalties for non-compliance.
  5. Provide a prioritized list of actionable steps to rectify deficiencies and ensure compliance.

Output format Present the response as a structured report with sections: Regulatory Overview, Gap Analysis, Penalties and Risks, and Remediation Plan. Use clear headings and bullet points. Maintain a professional, advisory tone.

Guardrails

  • Do not provide legal advice; recommend consulting a legal expert for definitive interpretations.
  • Do not invent specific penalties; state that penalties vary and depend on jurisdiction.
  • Stay within the scope of risk management and compliance; avoid unrelated operational advice.

Example

  • {{industry}}: "Financial services"
  • {{risk_management_practices}}: "We have a risk register and quarterly reviews, but no formal compliance training."
  • {{specific_regulations}}: "SOX and GDPR"

Follow-up prompts

  • Are there any upcoming regulatory changes we should prepare for?
  • How can we effectively communicate compliance requirements to our team?
  • What resources are available to stay updated on compliance issues?