IIA Wants Mandatory Internal Audits for US Crypto Exchanges

The Institute of Internal Auditors said it wants an independent internal audit function at all US crypto exchanges to restore investor confidence in the industry

article-image

chase4concept/Shutterstock modified by Blockworks

share

The Institute of Internal Auditors sent a letter to Congress Thursday recommending that all US crypto exchanges have an independent “internal audit function.”

Inside were four separate legislative proposals that will “promote stronger corporate governance, greater transparency and accountability, and enhanced investor protections at cryptocurrency exchanges operating in the United States,” according to the May 4 letter written by Anthony Pugliese, president and CEO of the IIA.

The second proposal defines an internal audit function as “a professional individual or group…responsible for providing the board of directors and management with…: objective assurance over the covered entity’s internal controls; consulting services; and strategic advice on risk mitigation.”

Additionally, the second proposal stipulates that the internal audit function will be independent from management.

The third proposal mandates the establishment of this internal audit function for all US crypto exchanges. The leader of the function will also be responsible for briefing a crypto exchange’s board on “material risks” no less than twice a year.

This IIA previously sent a letter to Congress in December following the collapse of FTX to begin a dialogue with lawmakers and “help shape their policy recommendations” amid the crypto winter. 

“The IIA conducted numerous meetings with congressional staff and external stakeholders to determine the appropriate role that internal audit could serve in potential policy solutions that Congress might consider regarding the lack of sufficient investor protections and corporate governance safeguards at cryptocurrency exchanges,” Pugliese wrote in the May 4 letter.

The final proposal that was attached to the IIA letter suggested that lawmakers create an annual auditing report that the management staff of crypto exchanges must fill out and send to whichever regulatory authorities Congress deems appropriate. Management would also have to have evaluated the effectiveness of the company’s internal controls 90 days prior to submitting the report. 

Pugliese closed out his message to lawmakers telling them that these guidelines could bolster investor confidence in a sector that’s been hammered by numerous shady actors.

“The IIA believes inclusion of new internal audit requirements will, in part, promote transparency and accountability designed to restore investor confidence in the cryptocurrency market,” he wrote.


Get the news in your inbox. Explore Blockworks newsletters:

Tags

Decoding crypto and the markets. Daily, with Byron Gilliam.

Upcoming Events

Javits Center North | 445 11th Ave

Tues - Thurs, March 24 - 26, 2026

Blockworks’ Digital Asset Summit (DAS) will feature conversations between the builders, allocators, and legislators who will shape the trajectory of the digital asset ecosystem in the US and abroad.

recent research

Research Report Templates (3).png

Research

South Korea is emerging as one of the most important global hubs for regulated digital assets, and Upbit sits at the center of this shift. Naver’s proposed acquisition could create the country’s dominant super app for payments, trading, and digital finance. This report breaks down the numbers, the regulatory tailwinds, the economics of the deal, and why the merger may unlock one of the most attractive asymmetries in Korea’s public markets.

article-image

Lido unveils a new buyback plan while BTC treasury companies slip below mNAV — can either model can truly return value?

article-image

If financial nihilism has driven you into memecoins, zero-day options, and sports betting, consider financial optimism instead

article-image

A new Sui-based protocol promises to unlock Bitcoin’s idle liquidity and eliminate wrapped-token risk

article-image

Could blockchain rails finally realize Ted Nelson’s non-linear, pro-creator “docuverse”?

article-image

What does Uniswap’s proposal to activate protocol fees and unify incentives mean for UNI token holders?

article-image

A recent mistrial illustrates how juries need more background information when it comes to judging complex systems like Ethereum