How to survive a GIPS verification Part 1: Setting up for success

Matt Deatherage, CFA, CIPM
Partner
July 23, 2021
15 min
How to survive a GIPS verification Part 1: Setting up for success

This article is part one of a three-part series on how to survive a GIPS verification. In this series we will discuss how to structure a successful verification, the initial requests made during a verification, and follow-up sample testing. Part one focuses on the approach we have seen firms successfully implement to get through a verification.

Step 1: Find a committed project manager

Probably the single most important thing necessary to get through a verification is having someone on your team that is committed to seeing the project through to the end. Verified firms come in all shapes and sizes. Therefore, there is not a one-size-fits all approach to managing a GIPS verification that works for every firm. Individuals tasked with overseeing verification projects naturally have other responsibilities, so finding time to focus on the verification can be difficult. But finding the right individual to manage the project can make all the difference.

Step 2: Educate your employees & stakeholders on GIPS and the verification process

Regardless of the size of your firm—and since GIPS compliance is achieved at the firm level—you will likely need input from a variety of people to complete your verification. Small and mid-size firms may not need to create a specific GIPS project team, but should still prepare to obtain input from different departments as verifiers regularly request information that requires input from others.

Educating your team about the importance of your firm’s GIPS compliance/verification and explaining how they can or will contribute to this effort is crucial. Getting their buy-in can make or break your timeline, as disengaged individuals are slow to respond to requests for information. We recommend making sure you get everyone on board. If Longs Peak is helping manage your verification, we can put together a training and deliver it to your team.

Step 3: Build your GIPS verification team

For larger firms, it may make sense to create a GIPS project team to help divide and conquer. Again, GIPS is achieved at the firm level, and therefore it will typically require input from various departments, including: performance, operations, client services, and trading, to name a few. Ideally, you’ll want at least one individual that clearly understands how your organization operates, the various departments that may need to be involved and where to access the documentation required.

The most efficient verification teams get together to discuss verifier requests and develop a plan for how the information is gathered, who is responsible for each type of request and who is ultimately responsible for sending the information back to the verifier.

We find that teams who meet regularly and communicate frequently are most successful at sticking to the timeline.  Having a designated project manager to act as the primary contact for the verification can simplify communication and ensure the requested information is organized. Ideally, this individual understands the fundamentals of GIPS – but don’t worry, if they don’t, Longs Peak can act as your GIPS guru. And, unlike your verifier, we’re not restricted by independence requirements so we can get as involved as you need.

Step 4: Create a verification project timeline

In our experience, most firms want their verification completed as soon as possible. Setting up a project timeline with specific milestones and clear deadlines will make this goal a reality. Verifications include numerous rounds of data requests to test different aspects of your firm’s GIPS policies and procedures. What’s great is you don’t have to do it yourself – your verifier or GIPS consultant can help you build out a timeline that works for your firm and will include all the critical objectives necessary. Check out this sample timeline to give you an idea of what’s typical.

When building out your timeline, the most important consideration is setting expectations for all parties involved and making sure they are on board with the project plan. Goals and deadlines are difficult, if not impossible to meet without communication. The firms that struggle the most are typically those that fail to transparently communicate expectations and receive buy-in for the project timeline from the start. Therefore, we strongly encourage you to involve all relevant parties (including your team, verifier and any third-party consultants) in setting project deadlines so everyone is aware of critical dates and milestones that need to be achieved.

Timelines should include goal dates for your firm as well as the verifier to hold everyone accountable to the ultimate goal: completing the verification. Tracking progress on the timeline will provide clarity on where the project is getting delayed and if the overall timeline is in jeopardy. Key stakeholders can use the timeline to evaluate the percentage of completion and can give your team a good sense of how close the project is to finish line.


Step 5: Set up recurring calls/meetings to stay on track

As simple as they are, setting up recurring meetings are a great tool to help keep the verification on track. These recurring calls can be internal to discuss the current requests and create action plans on collecting and delivering the needed data, or they can include your verifier to discuss progress, ask questions, and ensure they can correctly interpret the documentation provided. These meetings should have clear agendas to help the team stay on track with the timeline. Here’s a sample agenda we’ve used with our clients.

If nothing else, the recurring calls help build accountability – no one likes admitting they didn’t achieve what they agreed to since the prior meeting. The tighter the deadline, the more frequent these meetings should happen. These discussions can also be used to evaluate if you need to adjust the timeline from initial expectations.

Step 6: Organize data submissions

As mentioned, verifications typically have multiple rounds of requests for various types of testing (here’s a typical verification request for your perusal). Usually, the most efficient way to get through them is to submit everything from each request at once. This helps you stay organized by making sure all documents needed in a given round are provided. However, this is not always achievable and it may not be appropriate, especially in a time crunch or if just a handful of testing items are holding up the rest.

While potentially less desirable, a piecemeal approach at least keeps the sharing of documents moving and although some documents may still be pending, at least the items provided can be reviewed – getting your firm that much closer to the completion of the verification project.

If you are not able to submit everything from the data requests at once, we recommend approaching the verification requests either by the specific type of testing or type of document being requested. Approaching the verification in blocks of smaller requests will allow you to stay organized, reduce overwhelm, and keep the verification progressing. You can ask your verifier to organize their request in this format or if you work with Longs Peak, we can help you organize it in this fashion and help you get through the request at your own pace.

After data from the initial request is submitted to the verifier (details on initial data requests are discussed in more detail in part two of this three-part series) the verifier will then begin sending sample testing requests (the details of which are covered in part three of this three-part series). If this seems overwhelming, it doesn’t have to be. We literally started Longs Peak to make it easier for firms like yours get through this process.

If anything is not clear from a specific verification request or you are unsure if the documentation pulled is sufficient, give the verifier a call and talk through these issues. Open and ongoing communication will keep your verification on track – and help you avoid wasting time on something not needed.

Step 7: Schedule an onsite verification or extended virtual screenshare

One way to expedite the verification project (or to reignite a stalled project) is to conduct the verification onsite. Most GIPS verification firms are willing to travel to their client’s office to do on-site-testing. This is an efficient way to move through a verification as you will have the verifier’s undivided attention to specifically work through testing items and answer questions – plus, they might have your undivided attention too!

Even if an onsite is not feasible, setting up an extended virtual meeting with screensharing capabilities can help move through data with the verifier and address questions as they arise. Screenshare meetings will allow your team and the verifier to review documents together and talk through any questions on the spot. Feedback can be shared during these meetings to ensure what was provided is sufficient to complete a given testing request.

Conclusion

Regardless of your firm’s size or approach to the verification, ongoing communication between all parties involved is critical to efficiently get through a verification. Setting up a project plan and executing on that plan will help you get through the verification as quickly as possible. Seek help from your verifier as questions arise and if you still are struggling, reach out to an independent consultant like Longs Peak to help you get the project to the finish line.

At the end of the day, GIPS compliance is achieved at the firm level and will likely require contribution from a variety of individuals from your business. Getting buy-in from everyone involved is critical to making sure all parties are on board with the plan and understand the end goal.

For more information on data requests and verification testing, check out part two and three of this three-part series. You can email matt@longspeakadvisory.com or sean@longpseakadvisory.com with questions or reach out to us on our website if you need help getting through your verification project.

Recommended Post

View All Articles

There is a common assumption among boutique investment managers that the Global Investment Performance Standards (GIPS®) are built for the largest firms in the industry — that compliance is something you pursue once you've reached a certain scale, a certain client type, or a certain level of institutional credibility.

That assumption is understandable. And it is costing firms real opportunities.

The GIPS standards have no AUM threshold to get started. There is no minimum number of clients or composites required before a firm can claim compliance. And increasingly, the institutional marketplace is not waiting for firms to reach some undefined moment of readiness before asking for it. If you are newer to the GIPS standards and want a foundation for what they are and why firms pursue them, start with our post What Are the GIPS Standards?

 

The Market Has Already Decided

The gatekeepers of institutional capital such as consultants, outsourced CIO platforms, model delivery networks, and institutional allocators, have been quietly raising the bar on performance reporting standards for years. GIPS compliance has shifted from a differentiator to a baseline expectation in many of these channels.

According to eVestment, two out of three manager searches conducted by investors and consultants on their platform exclude firms that are not GIPS compliant. That means boutique managers without a compliance claim are not being passed over, they are simply not being seen. As we explored in From Compliance to Growth, GIPS compliance has effectively become the price of admission for firms seeking to expand into institutional channels.

The question is not whether your firm will eventually need it. For most managers with institutional ambitions, the answer to that question is already yes. The real question is when you choose to pursue it, and whether you make that choice on your own terms or in response to a mandate you cannot afford to lose.

 

What Compliance Actually Builds Inside Your Firm

The benefits most managers focus on are external. Things like the credibility signal, the access to channels, the due diligence box that gets checked. Those benefits are real. But some of the most meaningful returns from GIPS compliance are internal.

Implementing the GIPS standards requires firms to formalize processes that often exist informally. Composite definitions. Discretion criteria. Benchmark selection rationale. Fee policies. Error correction procedures. For many boutique managers, the implementation process is the first time these decisions have been documented and applied consistently across the firm.

That discipline matters beyond GIPS compliance itself. A firm with clean, documented performance infrastructure is better positioned for regulatory examinations, investor due diligence, and operational due diligence reviews. It demonstrates to sophisticated allocators that the firm is run with the same rigor they apply to their own oversight responsibilities. And for firms that are not primarily focused on institutional distribution, this operational foundation has standalone value, the kind of infrastructure that supports sound governance regardless of who is asking. For more on what a well-governed GIPS compliance program looks like once it is in place, see What Good GIPS Compliance Governance Looks Like in Practice.

 

The Single Best Argument for Starting Now

Here is the point that does not get made often enough: the smaller your firm and the shorter your track record, the easier it is to become compliant. That ratio flips quickly as you grow.

Retroactively constructing composites across a large number of separate accounts is genuinely difficult work, particularly when no framework existed at the time to assign accounts to composites at inception, or to move accounts between composites as investment objectives changed, client restrictions were added or removed, or mandates evolved. Working through that history portfolio by portfolio, period by period, requires both detailed documentation and sound judgment. It is one of the most time-consuming phases of any GIPS compliance implementation, and the complexity compounds with every account and every year of history added.

A firm with 30 separate accounts and a two-year track record faces a very different implementation project than the same firm a few years later with 500 accounts and a five-year track record. The strategy, the clients, and the investment process may be nearly identical, but the administrative burden of reconstructing historical composite membership correctly is not.

The firms that find implementation most manageable are the ones that started before the project grew into something unwieldy. The firms that find it most painful are the ones that waited until an institutional prospect made it urgent.

What if you are not ready to commit to full compliance yet?

That is a legitimate position. But there is a practical middle path worth considering: even if a firm does not want to claim compliance with the GIPS standards today, building out the composite structure and creating policies and procedures for managing those composites now is a worthwhile investment. That framework does not require a formal compliance claim to be useful. Additionally, it can be carried directly into a full GIPS compliance program when the time is right, dramatically reducing the effort required at that stage.

 

The Real Costs

Becoming GIPS compliant requires real work, and it is worth being direct about what that entails. At a high level, implementation comes down to four phases: defining the firm, building a GIPS standards policies and procedures manual, constructing composites and calculating performance, and creating GIPS Reports with ongoing monitoring controls. We walk through each phase in detail in A Practical Framework for Implementing the GIPS Standards.

In terms of ongoing commitment, firms should expect monthly composite management, annual GIPS Report updates, periodic policies and procedures reviews, and distribution tracking. For a lean team, owning all of this internally is often not realistic. The good news is that outsourcing to a GIPS compliance consultant is a well-established path for boutique managers and one that many firms in our client base have taken successfully. The total cost of compliance for a focused, well-organized firm is frequently lower than managers expect, particularly when implementation is approached while the firm's history and account universe are still manageable.

 

Is This the Right Time for Your Firm?

Not every firm is at the same point in this decision. Managers with the strongest case for pursuing GIPS compliance now include:

  • Firms actively pursuing institutional mandates or seeking coverage from investment consultants
  • Managers on model delivery platforms or building toward that distribution channel
  • Firms planning meaningful growth over the next two to three years
  • Any manager whose clients or prospects have already raised the question
  • Firms that simply want to build a best-in-class performance reporting foundation, regardless of where their distribution strategy stands today

The case is lower urgency for firms focused exclusively on high-net-worth or retail clients with no near-term institutional ambitions; however, there is still value in building a sound performance reporting structure, and the sooner it is established, the easier the work will be.

On Verification: You Can Wait

Verification is independent, voluntary, and valuable. It is also not required to claim compliance with the GIPS standards, and for cost-conscious boutiques, it is a reasonable place to exercise flexibility.

A firm can become GIPS compliant today and gain all the operational benefits and the ability to make the compliance claim and defer pursuing verification until there is specific demand for it. When an institutional prospect or consultant asks whether the firm is verified, that is the right moment to add it. The compliance foundation built now makes that future engagement faster and less disruptive. For a detailed walkthrough of what the verification process involves, see our series How to Survive a GIPS Verification.

Verification is worth having. It just does not need to happen on day one.

 

The Longer You Wait, The Heavier the Lift

GIPS compliance is not an initiative that gets easier with time. Every year a firm grows its account base, extends its track record, and adds complexity to its operations without a compliance framework in place is another year of history that will eventually need to be organized, documented, and reconstructed.

The managers who find implementation most straight forward are not the ones with the most resources. They are the ones who started early enough that the project was still proportionate to the size of the task.

If your firm is headed toward institutional distribution (most boutique managers we work with are), the best time to build this infrastructure is before you need it. The second best time is now.

 

Longs Peak Advisory Services specializes in GIPS compliance and investment performance consulting for investment managers and asset owners. We have helped over 250 firms implement and maintain compliance with the GIPS standards. If you are evaluating whether now is the right time for your firm, we would be glad to talk through it. Reach out athello@longspeakadvisory.com.

 

GIPS® is a registered trademark owned by CFA Institute. CFA Institute does not endorse or promote this organization, nor does it warrant the accuracy or quality of the content contained herein.

Every Spring, the performance measurement community gathers for PMAR: The Performance Measurement, Attribution & Risk Conference, hosted by TSG. This year marked the twenty-fourth annual, and I left thinking about it differently than I have in years past.

Most years, the themes evolve gradually. This year, I felt like the ground was moving.

The theme nobody put on the agenda but ran underneath nearly every session was the pace of change. Specifically, what artificial intelligence is about to do to our work. And while I came away energized, I also came away with a healthy dose of " we (as in everyone) are not ready for how fast this is coming."

Here's what stayed with me.

AI Was the Undercurrent of the Whole Event

The session titled "AI, Anxiety, and Opportunity: What Performance Professionals Need to Know" was, predictably, one of the most sought-after sessions of the conference. The panel, which included practitioners from across the industry, did a nice job naming both sides of the coin: the anxiety of not knowing what your job looks like in five years, and the opportunity sitting right in front of us if we lean in.

Here's my honest read of the room, though. The mood was optimistic. Maybe a little too optimistic. There was a comfortable assumption that AI will mostly handle the tedious parts and leave the interesting work to us. Or that AI won’t take your job, someone that knows AI will. I'm not sure it'll be that tidy.

From what we're already seeing in our own work and across the firms we serve, the capabilities are advancing faster than most people can comprehend. The days where “our industry is just slower to adapt” are gone. Just last week, anthropic released Fable 5 and before it was shut down (temporarily?), we played around with it a little and its capabilities are dumbfounding. I don't think it will be long before these conferences look drastically different. Different sessions, different vendors, maybe a different sense of what the job even is. That's not a doom prediction. It's just a reason to pay closer attention than feels comfortable.

Separating Skill From Luck Just Got Harder and More Important

One of my favorite sessions was Michael Ervolini's "You Can't Find Skill in Returns: Distinguishing Performance From the Decisions That Generate Them." It's a deceptively simple premise: returns tell you what happened, not whether the manager was actually good. A great number can come from a great decision, or from luck. A bad number can hide genuine skill.

What I appreciate about PMAR is that the community keeps bringing fresh perspectives to this old, hard problem: how do we actually evaluate skill versus luck? It's a question that never fully resolves, and every year someone pushes the thinking forward.

It struck me that this question gets more important in an AI world, not less. As machines take over more of the calculation and even some of the decision-making, our value shifts toward judgment – knowing which decisions deserved credit, which results were noise, and what a number actually means in context. That's the kind of discernment a model can assist with but can't own. For more from Mr. Ervolini, here's a link to his latest book Skill vs. Luck.

The GIPS Challenges That Keep Coming Back

I'm biased here, but the "Common GIPS Challenges and How to Avoid Them" session was a highlight for us, in part because our own Matthew Deatherage, CFA, CIPM, was on the panel alongside peers from TSG, MassPRIM, and Strategic Investment Group.

What I always find striking about this topic is how consistent the challenges are. Firms pursuing compliance with the Global Investment Performance Standards (GIPS®)* tend to stumble on the same handful of issues year after year, and almost all of them are avoidable with the right foundation in place. That's a big part of why we do what we do at Longs Peak: helping firms get ahead of those pitfalls instead of discovering them during verification or, worse, during a regulatory exam.

Matt is a familiar face on these panels, and it's great to have our perspective in the mix. But the takeaway that stuck with me tied right back to the AI thread running through the whole conference.

Across several different panels, presenters talked about feeding the GIPS standards into their own AI models to churn out GIPS reports. And here's the thing, anyone can do that. You can drop the standards into a model in minutes. What a model can't do is provide critical judgment about how a principles-based framework should be applied to your specific facts and circumstances and whether those GIPS reports and statistics were calculated correctly. The GIPS standards aren't a checklist; they're a set of principles that require interpretation, and interpretation is exactly where experience earns its keep.

I'm not saying don't use AI to help build a framework. Use it. But like any model, if you don't really know what you're asking it to do, the output won't save you. Simply asking a model to "make my firm GIPS compliant" isn't going to make it so. At least not yet!

And there's one problem every performance professional already knows AI hasn't solved: data. As they say, garbage in, garbage out. Meaningful performance lives and dies on clean, well-organized data, and no software tool or AI model fixes messy inputs alone. At Longs Peak, we have spent the last 10 years working with clients to improve data quality through data integrity testing. For us, these AI models have only expanded what’s possible. We know one thing for sure: setting these tools up with the proper context (i.e., knowing what to look for) and then evaluating that context on an ongoing basis may turn out to be the most crucial piece of it all.

CFA Institute Is Listening on the CIPM

A session I didn't expect to find as interesting as I did was "CIPM Through the Practitioner Lens," facilitated by Rob Langrick of CFA Institute. Rather than simply presenting at the room, CFA Institute came to listen and gather candid feedback on the CIPM designation: where it's delivering value, where it's falling short, and how it should evolve to stay relevant to the work we actually do day to day.

The audience didn't hold back, and there were some genuinely thoughtful suggestions including how the code of ethics will evolve in this new AI era, some recommendations on reformatting the exam to break it into smaller chunks (going into greater detail on each) as well as adding a CIPM group within the CFA societies to encourage further connection. It was refreshing to see CFA Institute putting real energy behind a credential that so many of us have invested in and want to see grow in value. Given the pace of change in our field, willingness to adapt feels necessary. For anyone interested in contributing ideas to the CIPM, you can use this link to provide feedback.

A Quick Word on the Trivia

I'd be remiss not to mention that Performance Trivia got a much-needed upgrade this year. In past years, only a handful of contestants got to play while the rest of us watched (though in fairness, not all of us were clamoring for the spotlight). The new format this time allowed everyone to participate (without taking center stage), and it was a lot more fun for it. A small change, but it captured something I value about this community: it's competitive, but it's also genuinely collegial and prides itself on memorizing quirky names and vintage formulas.

Before PMAR Even Started: Women in Performance Measurement

For me, the week actually started the day before the conference, at the Women in Performance Measurement (WiPM) gathering. An event created just for the women in our industry. It's one of my favorite parts of this trip every year, and not only because the conversation is good. There's something energizing about being in a room full of women who do this work, comparing notes and reconnecting.

Fittingly, AI came up here too, though in a much more hands-on way than it would on the main stage. Practitioners shared real use cases, both personal and professional: the small ways AI is already saving them time day to day, and the bigger experiments they're running at their firms. It was practical, curious, and refreshingly free of hype.

We were also lucky to have a guest speaker, Lidia Arshavsky, who spoke on executive presence. She broke down how executive presence actually gets evaluated inside organizations (the signals people pick up on, often without realizing it) and offered practical recommendations for strengthening your own. It was the kind of talk that's useful no matter where you are in your career.

It was a great way to kick off PMAR, and an even better way to reconnect with women I only get to see a few times a year. Sometimes the most valuable part of a conference happens in these opportunities to network and reconnect within our niche performance community. A big thank you to TSG who donated the space for this event to take place and have done so for many years.

What AI Can't Take From Us

The conference's forward-looking sessions, including "Innovative Ways to Present Performance: Dashboards & Analytics," got me thinking. The tools are evolving so quickly and so much of the analysis, presentation, and reporting can now be automated. I am left wondering how long the traditional use of software in our space will last in its current form.

When the capabilities advancing fastest don’t always come from the established vendors, who benefits? My hope is that everyone does. That these tools level a playing field that used to tilt heavily toward the largest institutions, give smaller firms the ability to deliver high-caliber analytics previously out of reach, and push the whole field toward better solutions. That makes for a more competitive space and ultimately a clearer picture for investors to evaluate their options.

That's the optimistic case, and I believe it. But it only holds if we stay clear-eyed about where our own value comes from and that's the note I want to leave you on. The pace of change is a reason to focus, not to panic. The things that make us valuable are the things AI can't take: consciousness, judgment, and the human-in-the-loop accountability that clients ultimately trust. Machines will calculate faster and present prettier. They won't sit across the table from a client and take responsibility for what a number actually means.

So, by all means, get curious about the tools (Claude seemed to be most people’s favorite – mine as well). Experiment. Don't be the individual or firm that gets left behind. But anchor yourself in the part of this work that's irreplaceably human, because that's the part that was always the point.

See you at PMAR 2027. I suspect it'll look a little different.

________________________________________

GIPS® is a registered trademark owned by CFA Institute. CFA Institute does not endorse or promote this organization, nor does it warrant the accuracy or quality of the content contained herein.

Most firms that decide to pursue compliance with the Performance Standards (GIPS®) already understand why it matters. They know institutional investors and consultants often expect it. They understand the credibility that comes from standardized, transparent performance reporting. And they recognize that a strong performance reporting process can improve internal consistency well beyond marketing.

What many firms struggle with is not the “why,” but the“how.”

The GIPS standards can be especially intimidating at first glance. There are detailed requirements, technical terminology, and a long list of considerations that touch everything from performance, to operations, compliance, and marketing. For firms approaching GIPS compliance for the first time, it is easy to feel like they need to solve everything at once.

Whether working independently or with external GIPS support,becoming GIPS compliant is significantly more manageable when approachedthrough a structured process.

At a high level, implementing the GIPS standards comes down to four major phases:

  1. Define the firm and scope the universe of portfolios
  2. Build policies and procedures
  3. Construct composites and calculate performance
  4. Create GIPS Reports and establish ongoing monitoring controls

The order matters more than many firms realize. When the foundation is built correctly at the beginning, the downstream work becomes significantly easier. For a broader overview of what the GIPS standards are and why firms choose to comply, see our earlier post, What Are the GIPS Standards?

Phase 1: Define the Firm and Scope Your Universe

Before constructing composites or calculating returns, firms first need to define the “firm” for the purpose of claiming compliance with the GIPS standards. This sounds simple, but it is often one of the most important decisions in the entire implementation process.

The GIPS standards require compliance on a firm-wide basis. Firms cannot selectively apply compliance to only their best-performing strategies or business lines. The firm definition determines which portfolios fall within the scope of compliance and ultimately impacts composite construction, total firm assets, disclosures, and marketing claims.

For smaller organizations, this step is often straightforward. The legal entity, branding, regulatory registration, and operational structure are usually aligned. In those situations, the firm definition may be relatively easy to document.

For larger organizations with complex legal structures or ones that operate under multiple brands, the analysis can become significantly more complex.

The following questions should be considered:

  • How is the firm held out to the public?
  • Do affiliates or subsidiaries share investment personnel or investment decision-making?
  • How are the various entities registered and branded relative to one another? 
  • How are investment strategies actually managed across entities?

The answer to these questions matters because the firm definition affects everything that follows. For complex organizations, it is worth investing real time here and involving compliance and legal teams before any other work begins.

Once the firm is defined, the next step is performing a full inventory of assets (or portfolios) that fall within the defined firm. That includes discretionary accounts, non-discretionary accounts, pooled funds, terminated portfolios, and any other assets managed by the firm over the entire period for which the firm will claim compliance.

One of the most common implementation mistakes is discovering late in the process that certain portfolios were overlooked or incorrectly categorized. Taking the time upfront to fully scope the universe of portfolios prevents significant cleanup work later on.

Phase 2: Build Your GIPS Standards Policies & Procedures Manual

The next step is building the firm’s GIPS standards policies and procedures manual, often referred to as the GIPS standards “P&P.”

The GIPS standards require firms to document the policies and procedures used to comply with all applicable requirements. But beyond satisfying the standards themselves, strong documentation creates consistency across operations, compliance, marketing, and portfolio management teams. Your GIPS standards P&P becomes the operational blueprint for how your firm calculates performance and maintains GIPS compliance. When drafted thoughtfully, ongoing maintenance becomes manageable. Firms that rush this phase often find themselves cleaning up problems indefinitely.

 

A well-designed P&P typically addresses the following:

  • Firm definition
  • Definition of discretion
  • Composite construction rules
  • Treatment of significant cash flows and composite minimums
  • Calculation methodologies
  • Fair valuation hierarchy
  • Error correction procedures
  • Books and records retention
  • GIPS Report distribution policies
  • Benchmark selection and changes
  • Fee schedules and policies for the use of actual or model fees

The definition of discretion deserves particular attention. Under the GIPS standards, discretion is not the same thing as having legal discretion documented in the investment management agreement. A client may impose restrictions that prevent full implementation of the strategy, and if those restrictions are significant enough, the portfolio should be classified as non-discretionary under the GIPS standards. Firms should establish objective criteria that can be applied consistently across portfolios and clearly document those criteria within their P&P. This determination has a direct impact on composite construction, as only portfolios deemed discretionary maybe included in composites, while non-discretionary portfolios must be excluded.

Calculation methodology should also be clearly addressed within the P&P. Firms should define how external cash flows are handled, the methodology used to asset-weight portfolios within composites, and whether any composites are subject to minimum asset levels or significant cash flow policies. For a more detailed discussion of large cash flow policies versus significant cash flow policies—and why both matter—see our post Large vs. Significant Cash Flows: What’s the Difference? These methodologies should be clearly documented.

Finally, firms often do not devote enough attention to developing their error correction policy during implementation. The GIPS standards require firms to establish materiality thresholds in advance that determine what actions must be taken when an error is identified. The time to think through that process is before an error occurs, not in the middle of responding to one.

We often find that this is the phase where firms realize that implementing GIPS compliance is not just a performance reporting exercise. It frequently exposes inconsistencies in operational workflows, account coding, historical records, or portfolio classifications. That is not necessarily a bad thing. It allows you to intentionally strengthen processes and reporting before those issues surface in higher-stakes situations such as verification, a regulatory examination, or investor due diligence.

One of the biggest hidden benefits of the GIPS compliance implementation process is that it forces firms to formalize processes that may have evolved informally over time. Many firms come out of the GIPS compliance implementation process with cleaner data, stronger internal controls, and more consistency across teams.

The key is to make the policies practical. The best GIPS standards P&Ps are not written purely for regulators or verifiers. They are designed to reflect what the firm actually does in practice and to provide internal teams with a framework they can follow consistently.

Phase 3: Construct Composites and Calculate Performance

Once your policies and procedures are in place, firms can begin the process of constructing composites and calculating performance. This is the phase most firms typically associate with GIPS compliance because it is where the visible performance reporting work happens. At this point, much of the difficult decision-making should already be complete. Composite construction is next and while that may sound straightforward conceptually, this is the phase where most firms get stuck in the implementation process.

Under the GIPS standards, discretionary portfolios must be grouped into composites based on similar investment mandates. The goal is to ensure firms present strategy-level performance fairly and consistently instead of selectively highlighting individual account results. The construction process typically has four steps:

  1. Identify every portfolio that meets the composite definition
  2. Determine the correct dates each portfolio should be in and out of the composite
  3. Asset-weight the portfolio-level monthly returns to produce composite-level performance
  4. Calculate all required composite-level statistics, including internal dispersion and the three-year annualized ex-post standard deviation of both the composite and the benchmark

It sounds simple, but it’s not always easy. The data work alone is substantial. Before anything meaningful can be built, the underlying portfolio-level data must be reviewed to ensure it is reconciled and accurate. That foundation matters because everything downstream depends on it.

The historical composite membership analysis adds another layer of complexity. Strategies evolve. Clients add or remove restrictions. Portfolios change mandates. When building a composite with a ten-year history, the question is not simply which portfolios belong in the composite today. Itis which portfolios belonged in the composite during each period in the historical record, and why. Working through that analysis portfolio by portfolio and period by period requires both strong documentation and sound judgment.

The good news is that there are tools available to help firms identify historical performance outliers to help test if composite inclusion was accurate. When a portfolio within a composite posts a return that deviates meaningfully from its peers during a given period, that deviation can be identified for further research. Was there a client-imposed restriction during that period that prevented full implementation of the strategy (i.e., making it non-discretionary)? Or was the deviation driven by a large cash flow, different starting position, security-specific activity, or simply the normal variation expected across portfolios managed within the same strategy? The answer determines whether the portfolio appropriately belongs in the composite for that period, and the wrong conclusion in either direction can undermine the integrity of the track record.

It is also important to be direct about the limits of technology in this process. Software can identify anomalies, efficiently perform calculations, and output results once the inputs are correct, but no system makes judgment calls. Determining how composites should be defined, how discretion should be applied, what constitutes a significant restriction, and how to evaluate edge cases in historical membership all require experienced professionals who understand both the investment strategies and the GIPS standards. The policies documented in Phase 2 provide the framework but applying that framework consistently across real portfolios and real historical circumstances requires thoughtful human judgment at every step.

Perhaps most importantly, composite construction should not be treated purely as an operations exercise. If composites are built solely around how data happens to be structured within the portfolio accounting system, without input from the investment team and without alignment with sales and marketing, the result may be operationally convenient but commercially ineffective. Bringing together operations, performance, investment professionals, and sales and marketing teams early in the process is essential. That collaboration is what ultimately produces results that are not only GIPS compliant, but also meaningful, defensible, and aligned with how the firm communicates its investment approach.

Phase 4: Create GIPS Reports and Go Live

The final phase of becoming compliant is creating the GIPS Composite Report(s). The GIPS Report is the firm’s external-facing proof of compliance and is a presentation that must be provided to every prospective client. Getting to this stage is what most people think of as going live, but in practice it is a milestone, not the finish line.

GIPS Reports require more than simply presenting returns in a table. Firms must include required statistics, disclosures, benchmark information, and firm-level details necessary for prospective clients to properly interpret the results. The disclosures are especially important because they provide context investors need to understand how the performance was calculated and what the results represent. They are very specific and must be in sync with what is documented in the P&P and what was performed to construct the composites. For more specifics on what is required, see our previous post, How to Update Your GIPS Reports for the 2020 GIPS Standards.

Once the GIPS Reports are complete and all requirements have been met, the final administrative step to claiming compliance is submitting the GIPS Compliance Notification Form to CFA Institute. This must be filed before compliance can be claimed, and it must be renewed annually.

Ongoing Maintenance: Where Most Firms Struggle

Getting to compliance is an achievement. Staying there requires consistent operational discipline.

The most common breakdowns in ongoing maintenance are rarely dramatic failures. More often, they are small process gaps that compound over time. Portfolios that should have been added to composites were omitted or added late. Significant cash flows were not handled in accordance with the composite’s policy. A new strategy was launched without formally determining whether it warranted the creation of a new composite.

To avoid these breakdowns, firms should incorporate GIPS compliance procedures into their regular monthly or quarterly performance processes rather than treating compliance as an annual reporting exercise. Clear ownership should be assigned internally and firms should establish a recurring compliance calendar that includes monthly composite reviews and annual GIPS Report updates. The GIPS standards policy manual should also be reviewed at least annually to confirm it continues to reflect how the firm actually operates. For a deeper look at what effective ongoing governance looks like in practice, see our post What Good GIPS Compliance Governance Looks Like in Practice.

Should You Get Verified

Verification is not required. Firms that are early in the process sometimes view this as a bigger decision than it needs to be. If a firm chooses to pursue verification, it must be performed by an independent third party, but the decision itself is entirely voluntary.

That said, verification is generally worthwhile, particularly for firms competing for institutional mandates where GIPS compliance is often considered table stakes. According to eVestment, two out of three searches conducted in their database by investors or consultants exclude firms that are not GIPS compliant, so the marketing benefit can be meaningful. Verification also provides an added level of assurance that the firm’s policies and procedures have been designed in accordance with the GIPS standards and implemented consistently across the organization. Operationally, it can create valuable discipline as well, since the expectation of independent review encourages firms to maintain strong processes throughout the year.

For firms that are newer to compliance or navigating budget constraints, the best path is often to first establish a solid compliance foundation and then pursue verification when the timing makes sense. We have also worked alongside nearly every major verifier in the industry and can provide practical insight into how different firms approach the process, what working styles may align best with your organization, and how to evaluate which verifier may be the best fit for your needs. For a more detailed walkthrough of the process, see our series on How to Survive a GIPS Verification.

Final Thoughts

Becoming GIPS compliant can feel overwhelming at the start, especially when going through it for the first time. But it does not have to be. For firms that approach implementation as a structured operational framework — rather than a collection of isolated technical requirements —typically find the process much more manageable.

The goal is not simply to produce a compliant presentation. The real value comes from building a repeatable, transparent, and defensible framework for calculating and presenting investment performance.

When implemented thoughtfully, the GIPS standards do more than support marketing efforts. They help firms improve consistency, strengthen controls, and communicate performance results with greater credibility and transparency. And in an environment where investors continue to demand greater transparency and comparability, those operational improvements can provide a meaningful competitive advantage, strengthening both credibility and investor confidence.