madhavshivpuri

Madoff – where was audit?

In Audit, Finance, Internal Controls on December 16, 2008 at 6:45 am

First of all, for those wondering about my name – I am Madhav. Not Madoff ! Some might find the pronounciation similar, but I am different guy!!!! Now that’s off my chest and  I feel better 🙂 

The first and the foremost thing I always ask when something big goes wrong about a company is- “Where was audit?”.

Definition and roles of audit – easy read for the layman.

I am not going to conjecture what happened, as it is a only evolving story. But in a nut shell, the hedge fund is a poorly regulated industry. Much of that could probably be attributed to the fact that most of the people or companies handing in their(?) cash did not think twice about the role of audit before dropping the cash on the table. They probably assumed that Madoff’s name and reputation was enough to convince them and their investors of the wise decision they had made.

Boring as it is to most people, audit should be seen as a key and critical part of investing. I am not going to waste my breath arguing that the hedge funds should be regulated…forgive me for being blunt, but without proper regulation one could equate hedge funds to a Swiss bank, giving you much a higher rate of interest right in the heart of the US.

Audit is the heart and soul of controls in a well organized company. The internal audit would have the mandate and the power to identify issues before they can happen, when they happen, or after they happen, report it to the management so that appropriate actions can be taken to prevent them from recurring. Do hedge funds have internal audit department? Did Madoff’s security firm have an internal audit department?

All securities firms registered with the SEC have financial statements that are certified by external auditors. Do hedge have financial statements that should be certified by external auditors? When Enron went down, they took Arthur Anderson, their external auditing firm, down with them. That is a deterrent to the external auditors from colluding with the management.

Do hedge funds have to adhere to the SOX 404 standard? By putting their name against the SOX 404 document, the management of the company (CEO, CFO and COO) would certify that the financial statements were accurate as far as they knew, and if the regulators proved otherwise, they might find themselves in a dark prison. So, they would stand to loose a lot and so would be (at least to some extent) deterred from wrong-doing.

Does SEC regulate and audit the hedge fund industry? No? Well, then who does? Do you think if they have sums like $50 billion invested in them, they should be regulated? Should there be a baseline amount after which some mandatory controls apply irrespective of the industry?

Normally when a “transaction” like a substantial investment is to be made by a big firm (like investment bank, retail bank), there typically will be a committee which has to approve such an invesment. Additionally these committee participants will include key management personnel and also senior representatives from Internal Audit, Compliance and Legal. Did the companies now reporting an exposure to Madoff, have such internal committees that reviewed an approved the investment risks before the cheque was signed?

In conclusion, audit is a critical component of controls in a well managed company. An absence of the same in a industry of this nature (like hedge funds) with billions invested in it, raises the question, why does not the Government want this industry to be regulated? Will the investors who have burnt their fingers now push for regulations in the hedge fund sector? Or, the rich and mighty investors have their way and shrug this off as a bad judgement and continue to invest in other hedge funds as long as their investment grow unquestioned?

Disclaimer: The author is an auditor by profession and values his role in the company and also the society.

Advertisements
  1. Run through your post and surprise to read that hedge fund is not properly regulated in the U.S.

    I am an internal auditor from Malaysia, not familiar with the U.S. SEC requirements, I would appreciate if you can enlighten me further…. Are you saying that hedge fund companies are not required to have an internal audit department? Do they need to have their financial statements audited by external auditors?

    Thanks.

  2. Hi George,

    As per my understanding the hedge fund industry is not properly regulated and does not mandate internal audit or certification of financial statements by external auditors.

    The point I make is that once the funds collected from the public (to be defined as more than 5-10 individuals or corporates) or if the amount is more than a certain sum (like greater than 1Mn dollars) then there should be appropriate controls. As the number of investors or the amount increases, so should also the controls.

    If a company has $50 Billion in investments but not enough regulations then there is a tremendous motivation for fraud as you would agree. So, my opinion is that there should be a fundamental review of the hedge fund industry (if it does not already exist).

  3. This is frightening.

    For a country that started SOX, they should have learned the lesson well. Yet again, such a big fraud can occur. This would certainly has long serious repercussion on investors confidence in Wall Street.

    Thank you for your quick response. I wish you a Happy 2009!

  4. US, which is the 2nd worlds largest democracy and is a 1st world country also has the highest level of guns among public and has public shooting…. well, guess good and bad always live side by side 🙂

    Cheers. Wish you also a Happy New Year.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

%d bloggers like this: