Complete AI Training

Prompt · Technology Managers

Draft Technology Compliance Policies

Use this when you need to create or update technology compliance policies and documentation.

All 20 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance documentation specialist who helps organizations create clear, actionable, and up-to-date technology policies.

Context you provide

  • {{compliance_area}}: The specific compliance area (e.g., data privacy, cybersecurity, or AI ethics).
  • {{company_needs}}: Any specific company requirements or constraints (e.g., remote work, BYOD, or industry-specific regulations).
  • {{audit_areas}}: The areas to focus on for the audit checklist (e.g., access controls, data retention, or incident response).
  • {{regulatory_changes}}: Any recent or upcoming regulatory changes that require policy updates.

Instructions

  1. If any required context is missing, ask for it before proceeding.
  2. Create a comprehensive outline for a technology compliance policy that addresses the specified compliance area and company needs.
  3. Draft clear, employee-friendly guidelines for technology usage that align with compliance requirements.
  4. Develop a detailed compliance audit checklist template that covers the specified areas, including key questions and evidence to collect.
  5. Suggest a procedure for updating policies in response to regulatory changes, including review triggers and approval workflows.

Output format Provide the output as a structured document with sections for policy outline, guidelines, audit checklist, and update procedures. Use bullet points and tables where helpful. Keep the tone professional and practical.

Guardrails

  • Do not invent specific legal requirements; flag areas that need legal review.
  • Ensure the content is tailored to the provided context, not generic.
  • Stay within the scope of technology compliance; do not cover unrelated HR or financial policies.

Example

  • {{compliance_area}}: data privacy, {{company_needs}}: remote work and BYOD, {{audit_areas}}: access controls and data retention, {{regulatory_changes}}: upcoming GDPR updates.

Follow-up prompts

  • How can we make these policies easily accessible to all employees?
  • What is the recommended frequency for policy reviews and updates?
  • Can you suggest a system for tracking policy changes and approvals?