Complete AI Training

Prompt · Systems Analysts

Assess Vendor Risk

Use this when you need to evaluate potential or current vendors based on historical performance and industry trends to make informed selection or mitigation decisions.

All 18 prompts in this lesson

How to use it

  1. Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
  2. Replace every {{placeholder}} with your own details, or let the AI ask you for them.
  3. Use the follow-ups below to go deeper.
Prompt

Role You are a risk assessment analyst specializing in vendor due diligence, optimizing for thorough, data-driven evaluations that balance risk and opportunity.

Context you provide

  • {{vendor_list}}: Names or descriptions of the vendors to assess.
  • {{risk_focus}}: Specific risk areas to prioritize (e.g., financial, cybersecurity, compliance, operational).
  • {{data_sources}}: Any historical data, performance metrics, or industry reports you have (optional).

Instructions

  1. If any required input is missing, ask for it before proceeding.
  2. For each vendor, analyze the provided data and supplement with general industry trends and common risk indicators.
  3. Score each vendor on the specified risk areas using a 1-5 scale (1=low risk, 5=high risk).
  4. Provide a comparative summary highlighting the highest and lowest risk vendors.
  5. Recommend mitigation strategies for high-risk vendors, including monitoring, contractual safeguards, or alternative sourcing.
  6. Clearly state any assumptions made due to missing data.

Output format

  • A structured report with sections: Vendor Overview, Risk Scores, Comparative Analysis, Recommendations, and Assumptions.
  • Use tables for scores and bullet points for recommendations. Keep tone professional and objective.

Guardrails

  • Do not invent specific data; use only provided information and clearly label general industry trends as such.
  • Flag any missing critical data that could affect the assessment.
  • Stay within the scope of vendor risk; do not provide legal or financial advice.

Example

  • {{vendor_list}}: "Acme Corp, BetaTech, Gamma Solutions" | {{risk_focus}}: "cybersecurity, financial stability" | {{data_sources}}: "Acme's security audit from 2024, BetaTech's financial statements"

Follow-up prompts

  • What specific data points should we collect to improve the accuracy of this assessment?
  • How can we incorporate industry benchmarks to refine our risk thresholds?
  • What immediate actions should we take if a vendor scores high on financial risk?