IIA Wants Mandatory Internal Audits for US Crypto Exchanges

The Institute of Internal Auditors said it wants an independent internal audit function at all US crypto exchanges to restore investor confidence in the industry

article-image

chase4concept/Shutterstock modified by Blockworks

share

The Institute of Internal Auditors sent a letter to Congress Thursday recommending that all US crypto exchanges have an independent “internal audit function.”

Inside were four separate legislative proposals that will “promote stronger corporate governance, greater transparency and accountability, and enhanced investor protections at cryptocurrency exchanges operating in the United States,” according to the May 4 letter written by Anthony Pugliese, president and CEO of the IIA.

The second proposal defines an internal audit function as “a professional individual or group…responsible for providing the board of directors and management with…: objective assurance over the covered entity’s internal controls; consulting services; and strategic advice on risk mitigation.”

Additionally, the second proposal stipulates that the internal audit function will be independent from management.

The third proposal mandates the establishment of this internal audit function for all US crypto exchanges. The leader of the function will also be responsible for briefing a crypto exchange’s board on “material risks” no less than twice a year.

This IIA previously sent a letter to Congress in December following the collapse of FTX to begin a dialogue with lawmakers and “help shape their policy recommendations” amid the crypto winter. 

“The IIA conducted numerous meetings with congressional staff and external stakeholders to determine the appropriate role that internal audit could serve in potential policy solutions that Congress might consider regarding the lack of sufficient investor protections and corporate governance safeguards at cryptocurrency exchanges,” Pugliese wrote in the May 4 letter.

The final proposal that was attached to the IIA letter suggested that lawmakers create an annual auditing report that the management staff of crypto exchanges must fill out and send to whichever regulatory authorities Congress deems appropriate. Management would also have to have evaluated the effectiveness of the company’s internal controls 90 days prior to submitting the report. 

Pugliese closed out his message to lawmakers telling them that these guidelines could bolster investor confidence in a sector that’s been hammered by numerous shady actors.

“The IIA believes inclusion of new internal audit requirements will, in part, promote transparency and accountability designed to restore investor confidence in the cryptocurrency market,” he wrote.


Get the news in your inbox. Explore Blockworks newsletters:

Tags

Decoding crypto and the markets. Daily, with Byron Gilliam.

Upcoming Events

Old Billingsgate

Mon - Wed, October 13 - 15, 2025

Blockworks’ Digital Asset Summit (DAS) will feature conversations between the builders, allocators, and legislators who will shape the trajectory of the digital asset ecosystem in the US and abroad.

recent research

Research Report Templates (2).png

Research

We’re bullish on the PUMP token. We believe Pump.fun's brand strength, existing integrations, product roadmap, and strategic levers justify PUMP's TGE valuation, and expect the token to re-rate meaningfully higher in the months ahead.

article-image

Big blockers wasted a bitcoin fortune trying to prove a point

article-image

Coinbase’s newest acquisition includes the CEO and Head of Research from Opyn

article-image

Crypto’s highest purpose might be to make markets better by making them bigger

article-image

The non-profit’s “Project Open” seeks to let stocks trade directly on Solana

article-image

The acquisition is Pump.fun’s first, and comes just days before its planned ICO

article-image

As Trump’s tariff war reignites, everyone is assuming the dollar will continue its path lower. But the journey might be bumpy