SEC Division of Examinations

The SEC Division of Examinations is the division of the U.S. Securities and Exchange Commission responsible for examining SEC-registered entities, including registered investment advisers, broker-dealers, and investment companies. Through those examinations it assesses compliance with the securities laws, identifies and monitors risk, and informs SEC rulemaking and enforcement.

Formerly OCIE

The Division was known as the Office of Compliance Inspections and Examinations, or OCIE, until it was renamed the Division of Examinations in December 2020. Older compliance manuals, vendor documentation, and internal policies still refer to OCIE. The two names describe the same function, and a firm whose written policies still say OCIE is signalling how long it has been since those policies were reviewed.

What an Examination Involves

An examination is a documentary exercise. The Division reviews a firm’s books, records, policies, and operations, testing whether the firm actually does what its regulatory filings and written policies say it does. Examiners issue document requests, interview staff, and evaluate areas including recordkeeping, conflicts of interest, custody, marketing, valuation, business continuity, and information security.

The process usually begins with a request list, continues through on-site or remote fieldwork, and concludes with a deficiency letter where findings exist. The firm responds in writing describing its remediation, and that response becomes part of the record the next examination starts from.

How the Annual Priorities Work

The Division publishes examination priorities each year, setting out the areas it intends to focus on. The priorities are not a syllabus for a test, but they are the clearest available signal of what examiners will ask about, and cybersecurity and operational resiliency have appeared consistently.

The practical use of the priorities is as a gap-check. A firm that reads them in the autumn has the following months to close anything it cannot currently evidence. A firm that reads them when the request list arrives is reading them too late.

Risk Alerts

Between annual priorities, the Division publishes Risk Alerts describing deficiencies observed across many examinations. These are more useful than the priorities for day-to-day compliance work, because they describe what firms actually got wrong rather than what examiners intend to look at. A Risk Alert on a topic is a reliable indicator that the topic will be examined.

Why Documentation Decides Outcomes

A firm with strong practices but weak records will struggle in an examination, while a firm with written, dated, retrievable documentation demonstrates compliance efficiently. The Division cannot credit a control it cannot see evidence of.

This is where technology firms and IT providers become directly relevant. The artifacts an examiner asks for are largely produced by systems: access logs, archived communications, backup and restore records, vendor inventories, training completion records, and the incident response plan with evidence it has been tested.

What Gets Asked For on the IT Side

Requests vary, but a recognizable set recurs: the written information security program, the most recent risk assessment, evidence of multi-factor authentication and how exceptions are handled, the vendor list with diligence records, the incident response plan and any test of it, user access reviews with dates, and confirmation that electronic communications are being captured and retained as the recordkeeping rule requires.

Each of those is straightforward to produce when it already exists and nearly impossible to reconstruct inside a response deadline.

Why the SEC Division of Examinations Matters for Investment & Professional Firms

For DFW registered investment advisers, the Division of Examinations is the regulator they will face directly, and the examination tests the evidence rather than the intent. DKBinnovative has supported DFW investment firms through multiple examination cycles since 2004, producing and maintaining the IT and security documentation the Division requests — for firms in Frisco, Plano, Irving, and Las Colinas.

Related DKBinnovative Resources

Sales & Support
(888) 352-4832