Skip to content
Tiatra, LLCTiatra, LLC
Tiatra, LLC
Information Technology Solutions for Washington, DC Government Agencies
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact
 
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact

Macy’s $154 million ‘hidden’ accounting mess shows the limits of today’s audit, GRC, and accounting systems

Macy’s on Monday reported that it needed to delay its earnings announcement, itself a stunning move that public companies try to never make, because a lone employee manipulated the retailer’s accounting systems for three years, hiding as much as $154 million.

Macy’s announced, “a single employee with responsibility for small package delivery expense accounting intentionally made erroneous accounting accrual entries to hide approximately $132 to $154 million of cumulative delivery expenses from the fourth quarter of 2021 through fiscal quarter ended November 2, 2024.” Macy’s clarified to CIO that it meant to say “$132 million to $154 million.”

The Macy’s statement continued, “there is no indication that the erroneous accounting accrual entries had any impact on the company’s cash management activities or vendor payments. The individual who engaged in this conduct is no longer employed by the company. The investigation has not identified involvement by any other employee.”

Macy’s said little else to clarify what happened and how it happened, but accounting specialists said that its brief statement offered many clues as to what likely happened. For example, the statement did not include the typically obligatory sentence that law enforcement had been notified. That might suggest that no criminal intent was discovered. 

Although that might seem at odds with the company’s use of the term “hidden,” one likely scenario is that the employee could have been using creative accounting to make the numbers look better, without realizing that such actions were not permitted by the Securities and Exchange Commission (SEC).

Macy’s declined a CIO request for an interview.

JR Kunkle, an auditor and GRC specialist who runs his own consulting firm, Kunkle Consulting, said that there is a reason why auditors hate it when companies log financials as accrual, as Macy’s said it did, rather than cash.

“Accruals is one of the ‘favorite’ areas (for auditors) because businesses will play around with it. You can move money up and down as the quarter goes,” Kunkle said. “What reasoning did you use to come up with this number? It’s a hard area to audit.”

More to the point for CIOs, it’s also a very difficult area for enterprise software to track, and to know when money movement is permitted under standard accounting rules and when it is not.

Kunkle and several accounting experts said the likely motivation of this employee was to make the company’s financials look better, probably to earn a better bonus for their division.

For a retailer as large as the $24 billion Macy’s, accounting mechanisms are especially complex. 

“It’s likely that someone was meant to have accrued this, but they were looking for ways to reallocate it so that they didn’t have to show those numbers,” said Stefan van Duyvendijk, an industry principal with accounting software vendor FloQast. “You would be surprised how long vendor payments can be delayed. They can say that they are prepaying the vendor so the numbers don’t hit the quarter and nothing hits the P&L [profit and loss statement]. You can also allocate expenses to different businesses, divisions.”

As for the defenses of Macy’s and other enterprises, he said these accounting tactics are often not discovered. “ERPs are really not designed to detect this. What technology finds difficult is nuance,” and accounting tactics are full of nuance. “[Macy’s auditor] KPMG didn’t identify it, either,” van Duyvendijk said.

“ERPs and most reporting software are not designed to catch erroneous accounting, let alone intentionally fraudulent accounting,” van Duyvendijk said. Although “they do have some key controls in place, they are limited, which is why account teams focus so much time on the month-end close process to identify and correct those mistakes.”

Another accounting specialist, Emburse CFO Adriana Carpenter, had some specific guesses as to what happened.

“What has been disclosed is that cash flows are not impacted, just the P&L. This leads me to hypothesize that the accountant changed the coding of these delivery transactions to charge the payments to a balance sheet account versus a P&L account. As a result, while the payments were appropriately recorded as cash outflows payments, the expense was never reported,” Carpenter said. “This coding could have happened at the time the transaction occurred, meaning it was tied to the transaction itself, or it could have been initially recorded to the P&L and a second journal entry was then posted to reverse the charge and move it to the balance sheet.”

Carpenter suggested that enterprises could prevent this with some procedural changes. Accounting could require that purchases have to be approved and an account code assigned “before the spend or transaction occurs. In this scenario, when the transaction actually happens, it has already been pre-assigned to be recorded as a P&L expense. That would prevent someone coming in and putting in another account coding, such as to a balance sheet account.”

Frank Dickson, the group VP of security and trust at IDC, was one of the few who thought that the employee’s actions likely went beyond aggressive accounting and were criminal. And he speculated that the lack of a reference to law enforcement was merely to allow Macy’s to control the situation a little bit longer.

Macy’s “now has control of this. If they report it as a criminal act, the company loses control,” Dickson said. “If someone intentionally changes their accounting principles to get a better bonus, that’s criminal.”

The Macy’s situation also illustrates the problem of insider activity. “When you have a malicious insider, they know the systems better than the company knows its systems,” Dickson said. 

For example, he said, every company is going to watch for financial deviations of varying amounts. If an insider knows the exact thresholds, they could consistently operate right below that level. “In a company that size, what will go unnoticed? They do this in the rounding errors, in the edges. What are the limits? Where can I hide things?”

From the IT perspective, much of this problem is not necessarily in the weakness of various accounting systems, but in cracks that form between those systems. 

“The problem is at the intersection of two systems: ERP and financial accounting. What can CIOs do to prevent this problem? Double down on your governance risk and compliance practices,” Dickson said. “Break down the walls between groups, such as ERP and accounting systems and cybersecurity. There are going to be gaps between those silos. What happens in those gaps is complexity. That’s where noise becomes signal.”

Another analyst, Moor Insights & Strategy VP Robert Kramer, echoed that “ERP systems will not have the ability to catch things like this. The only way you can really fix it is to strengthen your internal controls with things such as multi-employee workflows.”

Macy’s “could have had an overreliance on manual components. And they might have a very complex delivery expense system,” Kramer said. 


Read More from This Article: Macy’s 4 million ‘hidden’ accounting mess shows the limits of today’s audit, GRC, and accounting systems
Source: News

Category: NewsNovember 26, 2024
Tags: art

Post navigation

PreviousPrevious post:현대오토에버, 임직원 업무 지원하는 생성형 AI 기반 ‘H챗’ 개발NextNext post:앤트로픽, AI-데이터 연결 표준 ‘MCP’ 오픈소스로 공개

Related posts

人の経験に頼った物流から、データで動く物流へ──SGHグループが挑む「データドリブン経営」の真価
April 22, 2026
Carles Llach: “La tecnología ha generado unas eficiencias enormes en el notariado”
April 22, 2026
The 4 disciplines of delivery — and why conflating them silently breaks your teams
April 22, 2026
The silent failure between approval and delivery
April 22, 2026
AI hype to AI value: Escaping the activity trap
April 22, 2026
5 lessons from Everest for high-risk AI projects
April 22, 2026
Recent Posts
  • 人の経験に頼った物流から、データで動く物流へ──SGHグループが挑む「データドリブン経営」の真価
  • Carles Llach: “La tecnología ha generado unas eficiencias enormes en el notariado”
  • The 4 disciplines of delivery — and why conflating them silently breaks your teams
  • The silent failure between approval and delivery
  • AI hype to AI value: Escaping the activity trap
Recent Comments
    Archives
    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • December 2025
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • January 2022
    • December 2021
    • November 2021
    • October 2021
    • September 2021
    • August 2021
    • July 2021
    • June 2021
    • May 2021
    • April 2021
    • March 2021
    • February 2021
    • January 2021
    • December 2020
    • November 2020
    • October 2020
    • September 2020
    • August 2020
    • July 2020
    • June 2020
    • May 2020
    • April 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019
    • June 2019
    • May 2019
    • April 2019
    • March 2019
    • February 2019
    • January 2019
    • December 2018
    • November 2018
    • October 2018
    • September 2018
    • August 2018
    • July 2018
    • June 2018
    • May 2018
    • April 2018
    • March 2018
    • February 2018
    • January 2018
    • December 2017
    • November 2017
    • October 2017
    • September 2017
    • August 2017
    • July 2017
    • June 2017
    • May 2017
    • April 2017
    • March 2017
    • February 2017
    • January 2017
    Categories
    • News
    Meta
    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org
    Tiatra LLC.

    Tiatra, LLC, based in the Washington, DC metropolitan area, proudly serves federal government agencies, organizations that work with the government and other commercial businesses and organizations. Tiatra specializes in a broad range of information technology (IT) development and management services incorporating solid engineering, attention to client needs, and meeting or exceeding any security parameters required. Our small yet innovative company is structured with a full complement of the necessary technical experts, working with hands-on management, to provide a high level of service and competitive pricing for your systems and engineering requirements.

    Find us on:

    FacebookTwitterLinkedin

    Submitclear

    Tiatra, LLC
    Copyright 2016. All rights reserved.