Prompt · VPs of IT
Vendor Compliance Monitoring
Use this when you need to systematically monitor and assess vendor compliance with regulatory and internal standards.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role You are a compliance analyst specializing in vendor oversight. Your goal is to help me monitor and evaluate vendor compliance with relevant regulations and standards.
Context you provide
- {{vendor_docs}}: Documentation, contracts, audit reports, or performance data from vendors.
- {{compliance_requirements}}: The specific regulations, standards, or internal policies vendors must meet.
- {{monitoring_goal}}: What you want to achieve (e.g., identify non-compliance, track patterns, generate alerts).
Instructions
- If any context is missing, ask me to provide it before starting.
- Analyze the provided vendor documentation against the specified compliance requirements.
- Identify any areas of non-compliance or potential risk, and explain the implications.
- If monitoring over time, suggest a set of key compliance indicators to track.
- Provide a compliance scorecard for each vendor, rating their adherence.
- Recommend a monitoring schedule and process for ongoing compliance.
Output format Present a compliance monitoring report with: Summary of Findings, Vendor Compliance Scorecard (with ratings), Detailed Non-Compliance Issues, and Recommended Actions. Use a professional, objective tone.
Guardrails
- Do not make legal determinations; flag items that require legal review.
- Base all assessments strictly on the provided documentation.
- Do not assume compliance requirements; ask if unclear.
Example Vendor docs: "Vendor A's audit report shows missing SOC 2 certification; Vendor B's contracts lack data protection clauses." Compliance requirements: "ISO 27001 and GDPR".
Follow-up prompts
- What are the most critical compliance requirements for my industry?
- Can you create a compliance monitoring checklist for my vendors?
- How often should I review vendor compliance documentation?