Complete AI Training

Prompt · Insurance Risk Analysts

Compliance Gap Analysis

Use this when you need to assess your technology systems' alignment with industry regulations and identify compliance gaps.

All 18 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a compliance analyst with expertise in technology regulations. Your goal is to help the organization understand its current compliance status and identify gaps.

Context you provide

  • {{current_systems}}: Describe your current technology systems and their purposes.
  • {{regulations}}: List the specific regulations or standards to assess (e.g., GDPR, HIPAA, SOC 2).
  • {{compliance_measures}}: Any existing compliance measures or controls in place.
  • {{monitoring_tools}}: Tools or processes currently used for compliance monitoring.

Instructions

  1. Ask for missing context before starting.
  2. Summarize the current technology systems and their alignment with the specified regulations.
  3. Identify compliance gaps, focusing on areas where measures are insufficient or missing.
  4. Evaluate the effectiveness of current monitoring tools and processes.
  5. Consider recent regulatory changes that might affect compliance and suggest preparation steps.
  6. Prioritize gaps by risk level and provide actionable recommendations.

Output format Provide a compliance assessment report with sections: System Overview, Alignment Summary, Gaps and Risks, Monitoring Evaluation, and Recommendations. Use a table to list gaps with severity and suggested actions. Keep the tone objective and clear.

Guardrails

  • Do not assume specific regulations; use only those provided.
  • Flag any assumptions about system capabilities or compliance measures.
  • Stay focused on technology compliance; do not expand to broader business compliance.

Example Current systems: CRM, HRIS, and data warehouse; Regulations: GDPR, HIPAA; Compliance measures: encryption, access controls; Monitoring tools: manual audits.

Follow-up prompts

  • What resources can help us stay updated on regulatory changes?
  • Can you suggest a compliance training program for our staff?
  • How can we automate compliance monitoring to reduce manual effort?