Skip to content

Blog

205 posts.
Every one of them here.

Licensing mechanics, audit defence, cloud waste, SaaS sprawl and shadow AI. Written for the people who answer for them, and detailed enough to use in a renewal.

Start with these

The pieces we would hand you first if you asked what is actually changing right now.

  • Featured

    CerteroX: What the Certero AI Assistant Means for Your Business

    The Certero AI Assistant lets authorised users ask plain-English questions of live asset, software and licence data. It is off until an administrator enables it, and it can never return data the person asking is not already entitled to see.

    Liam Mcbride 7 min read
    • ITAM
    • AI
    • Governance
The library

Everything, newest first.

All 205 posts, covering hardware, licensing, subscriptions, cloud spend and the governance that has to sit over all of it. Search it, filter it or read straight down.

Topic

Year

40 of 156 posts · Governance · Policy, process and platform choice.

2026 9 posts

  1. CerteroX: What the Certero AI Assistant Means for Your Business

    The Certero AI Assistant lets authorised users ask plain-English questions of live asset, software and licence data. It is off until an administrator enables it, and it can never return data the person asking is not already entitled to see.

    • ITAM
    • AI
    • Governance
    7 min
  2. The Full Tokenomics Stack: Finding and Governing Every AI Cost Driver, From Shadow AI to the Copilots Inside Your SaaS

    Most AI spend is not arriving as new invoices. It is arriving inside software you already own, priced per token, owned by nobody. Six commercialisation patterns, why per-seat governance cannot see them, and what to do instead.

    • SaaS
    • AI
    • Governance
    • FinOps
    8 min
  3. What is the best ITAM solution for hybrid cloud environments?

    Hybrid IT broke the ITAM tools built for the data centre. What unified discovery, software recognition and governance actually have to cover when your assets span on-premises, virtual, cloud and SaaS — and how to test a vendor against it.

    • ITAM
    • SAM
    • Cloud
    • Governance
    9 min
  4. Best SaaS Management Platforms: 2026 Evaluation Guide

    What a SaaS management platform has to do in 2026, how the market divides, and the six criteria to score your shortlist against — including where Shadow AI detection now sits as a first-class requirement rather than a tag.

    • SaaS
    • AI
    • Governance
    8 min
  5. Shadow AI: The New Shadow IT Problem (And Why Visibility Comes First)

    Shadow AI moves faster than Shadow IT and carries a wider blast radius. What it is, why the old playbooks do not cover it, and the discovery standard you need before any policy can hold.

    • SaaS
    • AI
    • Governance
    • Security
    8 min
  6. ITAM & SAM: The foundations of modern cyber security

    Security tools only protect what they can see. ITAM and SAM close the visibility gaps that leave legacy machines, unsupported software and mixed-platform hardware outside your defences.

    • ITAM
    • SAM
    • Governance
    • Security
    5 min
  7. Security needs visibility: The defence value of ITAM

    Most breaches are not exotic. They start with an old machine, forgotten software or a misconfigured endpoint nobody owned. ITAM is the layer that finds them first.

    • ITAM
    • Governance
    • Security
    5 min
  8. Shadow AI: finding the opportunities and reducing the risks

    Most AI use inside large organisations never reaches IT. Here is why it happens, what it actually risks, and how to get control of it without banning the tools your teams have already found useful.

    • SaaS
    • AI
    • Governance
    • Security
    8 min
  9. UK businesses sitting on a Shadow AI 'data and privacy disaster'

    Microsoft's research found 71% of UK employees using unapproved AI tools at work — and most of them untroubled by the risk. Without visibility of what is running, GDPR compliance becomes impossible to evidence.

    • SaaS
    • AI
    • Governance
    • Security
    5 min

2025 32 posts

  1. Device-based licensing and access control

    Locking an application down at user level does not make you compliant with a per-device licence. In a Citrix or RDS environment, one user with access can cost you a licence for every device in the organisation.

    • ITAM
    • SAM
    • Governance
    4 min
  2. Gartner Myth Buster – Part 1

    A third-party summary of a vendor can be wrong, and it stays wrong for as long as people read it. The case for checking a vendor's facts at source — and the current, sourced record for Certero.

    • ITAM
    • SAM
    • Governance
    7 min
  3. The role of good data in software audits

    An audit is won or lost on the quality of your inventory long before the letter arrives. Six ways data goes wrong, and what it takes to have the answer already in hand.

    • ITAM
    • SAM
    • Governance
    8 min
  4. Is your ITAM function ready for Coronavirus?

    A business continuity checklist for ITAM and SAM leaders — licensing when staff work from personal devices, temporary rights changes that are never reversed, unsanctioned software, and keeping sight of machines that no longer touch the corporate network.

    • ITAM
    • SAM
    • Governance
    • Security
    7 min
  5. Oracle ULA – What are the dangers and how do you avoid them?

    An Oracle Unlimited Licence Agreement is only unlimited within its clauses. What certification actually asks of you, where toxic consumption creeps in, and why the measurement work has to start at the beginning of the term rather than the last six months.

    • SAM
    • Governance
    6 min
  6. Selecting the right SAM & ITAM tools: Why platform architecture matters

    Functionality gets a tool onto your shortlist. Architecture decides what it costs you afterwards — in onboarding time, in time to value, and in what happens the day you want to add a discipline you did not buy.

    • ITAM
    • SAM
    • Governance
    9 min
  7. Why SaaS is not the end of SAM

    SaaS removes the under-licensing risk, not the discipline. The question stops being "am I compliant?" and becomes "am I using what I pay for, and does the leaver still have access?"

    • SAM
    • SaaS
    • Governance
    7 min
  8. Software audits — what can go wrong?

    Two of the things that most reliably sink an audit defence — an entitlement record you cannot reconstruct, and the assumption that moving to the cloud removed the problem.

    • SAM
    • SaaS
    • Cloud
    • Governance
    4 min
  9. Technology or Service: What's the fastest route to SAM success?

    Four ways to structure a software asset management programme — buy and run it, buy and wrap a service around it, outsource onto someone else’s technology, or outsource onto the provider’s own. What each one actually costs you in time, skills and accountability.

    • ITAM
    • SAM
    • Governance
    6 min
  10. Three areas to help you raise extra funds for your public sector IT investments

    Public sector IT budgets rarely stretch to everything on the list. Three places to find the money you already have — cost reallocation, getting more out of ageing assets, and an optimised licence position.

    • ITAM
    • SAM
    • Governance
    • FinOps
    6 min
  11. How virtualisation and usage monitoring affect a software audit

    Virtualisation changed how software is licensed, not just how it is deployed. Add usage-based metrics and indirect access, and the gap between what you run and what you owe gets very expensive.

    • ITAM
    • SAM
    • Governance
    6 min
  12. Why CIO priorities for 2020 are good and bad news for ITAM and SAM leaders

    A 2020-cycle read on CIO priorities — talent, devolved decision-making, culture, data, automation and new technology — and what each one meant for ITAM and SAM teams. Revisited with what the tooling can actually do now.

    • ITAM
    • SAM
    • AI
    • Governance
    5 min
  13. Microsoft Licensing Update – September 2025

    Six Microsoft Product Terms changes that took effect on 1 September 2025 — Copilot Chat entering the Core Online Services list, Visual Studio moving under the MCA, Windows 10 ESU through CSP, and more. What each one changes, and what to do about it.

    • SAM
    • AI
    • Governance
    4 min
  14. Certero Insider Newsletter – September 2025

    Microsoft removes Enterprise Agreement discounting on Online Services, SPLA use ends on the hyperscalers, SAP withdraws special discounts on-premises, Broadcom faces a lawsuit from Tesco, and Oracle Java keeps pushing customers towards OpenJDK. What changed in August 2025, and what it means for your licence position.

    • ITAM
    • SAM
    • Cloud
    • Governance
    10 min
  15. How to Streamline IT Operations Using Automation Tools

    Manual IT operations do not scale. A practical look at where automation pays back first — incident response, patching, provisioning and backup — and how to adopt it without creating isolated pockets of scripting.

    • ITAM
    • Governance
    5 min
  16. ITAM Beyond 2025: Data-Driven & Trend-Based. Key Insights for CIOs.

    IT asset management has moved past inventory and compliance checklists. What CIOs should expect from an ITAM programme now: live data, hybrid coverage, automation, compliance integration and lifecycle sustainability.

    • ITAM
    • SaaS
    • Cloud
    • Governance
    6 min
  17. Microsoft Licensing Update – August 2025

    Microsoft's August 2025 Product Terms changes: Extended Term standardised across programmes, Exchange and Skype for Business Server Subscription Editions, the Exchange and Windows 10 ESU programmes, and the Dynamics 365 F&O enforcement dates.

    • SAM
    • Governance
    4 min
  18. The real cost of Shadow IT (and how to bring it under control)

    Shadow IT is not a discipline problem, it is a friction problem. What unapproved tools actually cost in wasted spend, security exposure and compliance risk — and the five steps that bring them back under governance without slowing teams down.

    • SaaS
    • AI
    • Governance
    • Security
    9 min
  19. Certero Drives Clarity and Software Optimisation Within the Healthcare Sector

    Healthcare IT teams routinely run without an asset inventory, a compliance position or an owner for either. This is what it takes to go from no visibility to a single record of truth — and what published NHS and healthcare customers report.

    • ITAM
    • SAM
    • Governance
    6 min
  20. Certero Insider Newsletter – August 2025

    The licensing and vendor news that mattered in August 2025: Microsoft product terms and price rises, Oracle Java soft audits, the Adobe subscription case, VMware versus Siemens, and the EU Digital Networks Act.

    • SAM
    • Cloud
    • AI
    • Governance
    6 min
  21. FIVE Surprising Stats About SaaS Waste in Enterprise IT

    Five numbers on SaaS waste — unused licences, portfolio sprawl, dollars burned, AI spend growth and cloud waste — and why visibility alone never fixes any of them.

    • SaaS
    • AI
    • Governance
    • FinOps
    7 min
  22. How Software Licence Audits Work and How to Prepare

    What actually happens in a vendor software audit — notification, kick-off, data collection, findings, response and resolution — and the preparation that decides how much it costs you.

    • ITAM
    • SAM
    • Governance
    9 min
  23. Top 10 IT Compliance Mistakes (And How to Avoid Them)

    The ten compliance failures that show up again and again in mature IT functions — manual tracking, hybrid blind spots, misread licence terms, unmanaged SaaS — and the controls that close each one.

    • ITAM
    • SAM
    • SaaS
    • Governance
    • Security
    8 min
  24. What CIOs Should Know About Hybrid Cloud Visibility

    Hybrid is the prevailing IT model, and the hardest thing about it is not architecture — it is knowing what you have. Without one view across on-premises, private and public cloud, every workload decision is a guess.

    • ITAM
    • Cloud
    • Governance
    • FinOps
    6 min
  25. 5 Ways Software Asset Management Improves Your Business

    SAM is usually sold as audit insurance. It is also a security control, a cost-reduction programme, due diligence for an acquisition, and the only reliable basis for rationalising your applications.

    • SAM
    • Governance
    • Security
    7 min
  26. What's About to Break in IT Asset Management in the Next 12 Months (And How to Stay Ahead)

    Cloud sprawl, decentralised buying and relentless audit pressure are pushing older ITAM setups past the point they were designed for. Here is where they crack first, and the four moves that keep you ahead of it.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min
  27. Why SaaS Sprawl Is Killing Your IT Budget (And What to Do About It)

    The average enterprise now runs 305 SaaS applications and leaves 46% of its licences unused. Here is where the money actually goes, why the risk is not only financial, and the six controls that stop the bleed.

    • SaaS
    • Governance
    • Security
    • FinOps
    6 min
  28. Certero Insider Newsletter – July 2025

    The licensing changes that mattered in June and July 2025 — Microsoft Product Terms, the return of the SAMOSA Act, the end of the Microsoft 365 nonprofit grant, Adobe's AI credit cuts, a Dutch ruling against Broadcom, and rising Oracle Java audit activity.

    • ITAM
    • SAM
    • SaaS
    • Governance
    10 min
  29. The History of FinOps: From DevOps Roots to a Strategic Business Discipline

    FinOps began as a reaction to engineers being able to spend money faster than finance could see it. Here is how it got from there to a formal discipline that now covers SaaS, licensing and AI as well as cloud.

    • SaaS
    • Cloud
    • AI
    • Governance
    • FinOps
    6 min
  30. IT asset discovery: the critical features your tool must have

    A clean discovery report is not the same as a complete one. What separates real asset discovery from device administration, and the four checks that tell you whether your current tooling is missing things.

    • ITAM
    • SAM
    • Governance
    6 min
  31. Oracle ULA: know your options. Exit with confidence.

    Renew, rescope or exit — an Oracle ULA gives you three routes and a narrow window to choose between them. The questions to settle first, and a six-point health check to see how ready you actually are.

    • SAM
    • Governance
    6 min
  32. Windows 11 migration: why it matters

    Windows 10 support ended in October 2025. If you are still finishing the migration — or paying for Extended Security Updates while you do — these are the questions to settle and a readiness check to score yourself against.

    • ITAM
    • Governance
    • Security
    8 min

2024 1 post

  1. Oracle Java 17 became chargeable in October 2024, when Update 13 was released

    Java 17 was free under the No-Fee Terms and Conditions only up to Update 12. From 17.0.13 it moved to the Oracle Technology Network licence — and any production use pulls you into a subscription priced on your whole workforce.

    • SAM
    • Governance
    4 min

2023 17 posts

  1. What triggers a software vendor audit?

    Audits rarely arrive at random. Ten patterns that reliably attract a vendor's attention — from a drop in support spend to a reseller who thinks there is a deal in it — and what to have in place before any of them apply to you.

    • SAM
    • SaaS
    • Governance
    6 min
  2. How to exit an Oracle Unlimited Licence Agreement (ULA)?

    Certification is a contractual declaration made under a 30-day clock, and Oracle will question it. What the post-ULA position actually looks like, and how to build an exit you can evidence rather than one you hope holds.

    • SAM
    • Governance
    7 min
  3. Oracle Java licensing changes

    Since January 2023 Oracle has sold Java SE on an employee metric, so the licensable unit is your whole workforce rather than the machines that run it. How to find every JDK, JRE and bundled runtime, pin the version and update level, and put a defensible number against it.

    • ITAM
    • SAM
    • Governance
    6 min
  4. Oracle Java Licensing: BCL, OTN and NFTC Explained

    Three different Oracle Java licences apply depending on which version you installed and when. What each one permits, when a no-fee licence stops being no-fee, and how to work out which of your JVMs are actually chargeable.

    • ITAM
    • SAM
    • Governance
    9 min
  5. SaaS Discovery: Turning Unknown SaaS Into the Known

    Shadow SaaS is what happens when buying software stops needing IT. What it costs you in security, compliance and spend — and the three converging discovery signals that now find it, including the AI tools nobody declared.

    • SaaS
    • AI
    • Governance
    • Security
    8 min
  6. Software Asset Management Plan

    A six-step plan for building a SAM programme that covers on-premises, SaaS and cloud as one problem rather than two — scope, maturity, people and technology, accountability, and what to do first.

    • ITAM
    • SAM
    • SaaS
    • Governance
    8 min
  7. What is an Oracle Unlimited Licence Agreement (ULA)?

    A ULA gives you unlimited volume of a named set of Oracle products for a fixed term. What that actually covers, why the certification at the end behaves like an audit, and the decisions you should make on day one rather than in month thirty.

    • SAM
    • Governance
    7 min
  8. What Does a SAM Manager Do Within the Business?

    The software asset manager owns the compliance position, but the value of the role is wider than that: risk prioritisation, procurement intelligence, tooling and the answers nobody else in the business can give.

    • ITAM
    • SAM
    • SaaS
    • Governance
    10 min
  9. What is a Software Audit Task Force?

    An audit notification rarely lands with the people who can answer it. A software audit task force brings the right stakeholders together, defines who is accountable for what, and gives the response a single voice.

    • ITAM
    • SAM
    • Governance
    4 min
  10. Software Audit Defence Tactics

    Ten questions organisations ask when a publisher audit lands — on the right to audit, delaying it, limiting scope, dictating tools, challenging findings and negotiating the settlement — with the honest answer to each.

    • ITAM
    • SAM
    • Governance
    10 min
  11. Understanding Your Software Use Rights

    Buying a licence does not make you the owner of the software. It grants you a right to use it under conditions — and those conditions are where both your compliance risk and your unclaimed value are hiding.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min
  12. What is an Oracle Technology Network (OTN) Java Licence?

    The OTN licence is the free Java grant that still governs most of the Java actually running in enterprises. What it permits, where it stops being free, how it differs from the BCL before it and the NFTC after it.

    • SAM
    • Governance
    6 min
  13. What's the Difference Between a CMDB & IT Asset Management?

    A CMDB is a database. ITAM is a business process. Confusing the two leaves you with a configuration record that is neither complete enough to trust nor detailed enough to license from — and five practical ways to fix it.

    • ITAM
    • SAM
    • Governance
    8 min
  14. Oracle Java Licensing Changes: Understanding Java Licensing in 2023

    In January 2023 Oracle replaced the Java SE Subscription with the Java SE Universal Subscription, and amended the wording again in March. The metric moved from hosts to employees. Here is what changed, who it hits, and what the upgrade cycle has done since.

    • SAM
    • Governance
    9 min
  15. What is the Oracle No-Fee Terms and Conditions (NFTC) Licence?

    The NFTC covers Oracle JDK 17 and later and permits free use — including commercial and production use. It also expires on a schedule. The conditions that invalidate it, and the upgrade cadence that keeps it valid.

    • SAM
    • Governance
    7 min
  16. Using Chopt To Enhance Oracle Licence Compliance With Database Options

    Oracle enables every database option by default when you install or clone an image. Chopt is how you find out and turn them off — and why it is a change-control step, not a licensing position.

    • SAM
    • Governance
    4 min
  17. Software Vendor Audits – 8 Things you need to know

    What an audit actually is, how it differs from a SAM review, what triggers one, and what you can do about it once the letter has arrived — including whether a completed audit can still be challenged.

    • SAM
    • Governance
    • Security
    9 min

2022 4 posts

  1. Understanding Microsoft's 'Dedicated Hosted Cloud Services'

    Microsoft's Outsourcing Software Management clause turns on one definition — the Authorised Outsourcer — and one condition almost everyone gets caught by. Here is what the three sections actually say.

    • SAM
    • Cloud
    • Governance
    4 min
  2. 4 Steps to Understand (and Trust) Your ITAM / SAM Solution

    How to tell whether an ITAM or SAM vendor can actually do what they say — security credentials, the one publisher verification that genuinely exists, independent customer evidence, and testing the outputs yourself.

    • ITAM
    • SAM
    • Governance
    • Security
    9 min
  3. The Rise in Oracle Java Audits: How to gain clarity

    Oracle asks to see your Java deployments before it will sell you more subscriptions. Why Java is the hardest thing in your environment to count, what the employee-based subscription changed, and how to build a deployment record you can actually defend.

    • SAM
    • Governance
    • Security
    6 min
  4. Using the Oracle EBS 12.1 End of Support to Drive Down Costs

    EBS 12.1 dropped to Sustaining Support in January 2022. A migration is the one moment you are allowed to ask what you actually own — and E-Business Suite responsibilities are where the recoverable licences hide.

    • SAM
    • Governance
    5 min

2021 9 posts

  1. Our Guide to Tackling Digital Transformation Roadblocks

    Four things that stall a transformation programme — organisational resistance, data silos, legacy infrastructure and the skills gap — and what each one actually requires of your IT asset data before you can move past it.

    • ITAM
    • SAM
    • Cloud
    • Governance
    7 min
  2. A SAM Consultant's Story: Audit Pressure & the Human Cost

    Software audits are usually discussed as a financial risk. The people who have to answer them carry a different cost. Certero consultants on what an audit letter does to a team, and what has to be true before it arrives for that not to happen.

    • SAM
    • Governance
    7 min
  3. ITAM & SAM Cost-Cutting & The Great Balancing Act

    Cutting the ITAM and SAM budget looks like a saving and usually is not. How to tell whether the tooling you already run is producing evidence of value — and what a platform has to cover to be credible now that SaaS, cloud and AI are on the bill.

    • ITAM
    • SAM
    • Governance
    6 min
  4. A Consultant's Story: Knowing Your Weaknesses

    How to assess SAM maturity honestly, and what to do about the gaps once you can see them — whether that means switching on more of the platform, bringing in publisher expertise, or building the in-house team through skills transfer.

    • SAM
    • Cloud
    • Governance
    7 min
  5. Does Digital Transformation End?

    Digital transformation is a philosophy with business intelligence at its heart, not a project with a completion date. Why it has no endpoint, what has to be true of your data before you can start, and what happens to organisations that decline.

    • ITAM
    • Governance
    5 min
  6. A Consultant's Story: No Tool Can Do It All

    Certero’s vendor licensing specialists on where the line sits between what a SAM platform computes and what only a human can decide — contract clauses, restricted-use rights, divestments and audit tactics.

    • ITAM
    • SAM
    • Governance
    10 min
  7. From Script to Solutions: The Story of an Oracle Licensing Expert and Technology-Led Services

    An Oracle licensing consultant on why she stopped trusting the layer between raw script output and a licence position — and what changed when the rules were driven by licensing experts and the raw data stayed visible.

    • ITAM
    • SAM
    • Governance
    6 min
  8. Do You Have to Accept an Official Software Vendor Audit Report?

    A publisher’s audit report is a submission, not a verdict. What an independent audit defence actually does, the questions that separate a SAM partner from a reseller, and why an audit report is still worth challenging after it lands.

    • ITAM
    • SAM
    • Governance
    8 min
  9. Sorry Consultants: It's Time to Redress Your Understanding of Oracle Licensing Technology

    Six myths about Oracle LMS-verified tooling, answered — what verification does and does not mean, what happens to your data, how false positives are handled, and why script output and platform data are complementary rather than rival.

    • ITAM
    • SAM
    • Governance
    8 min

2020 0 posts

2019 23 posts

  1. The Role of IT and Software Asset Management in Mergers and Acquisitions

    Due diligence covers the balance sheet and rarely covers the licence position — which is exactly why publishers watch acquisitions closely. What both sides need to know before the deal closes, and what to do when neither has a SAM programme.

    • ITAM
    • SAM
    • SaaS
    • Governance
    7 min
  2. PVU, RVU and User-Based Licensing – the three IBM licensing metrics you absolutely must know

    IBM licensing runs on hundreds of metrics, but three of them decide most of your position. What Processor Value Units, Resource Value Units and the user-based family actually measure, and what has to be true of your inventory before any of it reconciles.

    • SAM
    • Governance
    6 min
  3. IBM Licence Metric Tool – The Challenges of Using ILMT

    ILMT is effectively mandatory if you take IBM sub-capacity licensing, but running it is not the same as being compliant. Where its automatic bundling stops, why its reports can overstate your usage, and what has to sit alongside it.

    • SAM
    • Governance
    6 min
  4. Oracle ASFU Licence – Everything You Need to Know

    Application Specific Full Use licences are Oracle software sold through a partner and locked to that partner's application. What qualifies, who carries the support obligation, who carries the compliance risk, and why ASFU customers can face two different audit routes.

    • SAM
    • Governance
    5 min
  5. Realising the Value of SAM in a World of ABIT

    Anyone But IT is how software is sold now. That does not make SAM obsolete — it changes the job from gatekeeping to guidance, and it makes discovery the part you cannot skip.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min
  6. Data Centre Software Asset Management – Six Tips for Success

    The data centre is where licensing gets expensive and where generic tools stop being useful. Six practical rules for managing Oracle, IBM, SAP and Microsoft licensing before an audit notice arrives.

    • ITAM
    • SAM
    • Governance
    6 min
  7. Oracle Licence Management – An Introduction to SAM and ITAM

    A five-minute grounding in how Oracle licenses its technology and application products, what the OMA and Ordering Document actually grant you, and what an audit or a licence review involves.

    • ITAM
    • SAM
    • Governance
    7 min
  8. Hardware and Software Asset Management: Securing Stakeholder and Sponsor Buy-In for Your ITAM and SAM Program

    Senior stakeholders decide whether to fund your ITAM and SAM programme. Treat them like investors: work out what each group actually needs, then show the data you can already give them.

    • ITAM
    • SAM
    • Cloud
    • Governance
    • FinOps
    5 min
  9. SAM Basics: what is an Effective Licence Position?

    An Effective Licence Position is the reconciliation of what you have deployed against what you are entitled to use. It is easy to describe and genuinely hard to build. Here is what goes into one, and why an annual snapshot is no longer good enough.

    • SAM
    • Governance
    5 min
  10. Microsoft SQL Server fail-over enhancements benefit customers with high availability and disaster recovery instances

    From 1 November 2019, Software Assurance on SQL Server started covering three additional instances rather than one — including a disaster recovery instance in Azure. It is worth money, but only if you can prove which SQL versions and editions you actually run.

    • SAM
    • Governance
    4 min
  11. Trick or treat! Don't build a SAM Frankenstack this Halloween

    Multiple inventory tools, an aggregation service, a bolt-on recognition database, a disconnected licence application and a third-party reporting layer. Stitched together, animated by a large surge of integration effort, and not quite all there. Six reasons a Frankenstack fails.

    • ITAM
    • SAM
    • Governance
    6 min
  12. Microsoft BYOL Licensing Change Affects Customers with Dedicated Hosting But No Software Assurance

    From 1 October 2019, Windows licences bought without Software Assurance and Licence Mobility could no longer be deployed on dedicated hosted services from Microsoft's Listed Providers. Who it hit, which products it covered, and why the rule still matters.

    • SAM
    • Cloud
    • Governance
    4 min
  13. Understanding a Microsoft Enterprise Agreement True-up

    An Enterprise Agreement is a trust-based contract, and the true-up is where the trust gets tested. What has to be counted, what Microsoft expects you to inventory, and why the work starts 120 days before the anniversary rather than 30.

    • SAM
    • Governance
    5 min
  14. Oracle Licensing Made Simple – What You Need to Know

    An orientation in Oracle licensing: what development, test and production environments each require, how support agreements change your rights, and the difference between Processor, Named User Plus and the legacy metrics you may still be carrying.

    • SAM
    • Governance
    8 min
  15. Digital Transformation and Software Asset Management

    Notes from a series of round tables with senior SAM stakeholders at SAMS Europe. Two things stopped SAM contributing to transformation programmes: relationships with people outside the function, and tools built for yesterday's scope.

    • SAM
    • SaaS
    • Cloud
    • Governance
    7 min
  16. SAM Platform that Actually Works, Just Imagine That

    The difference between a genuine SAM platform and a rebranded collection of tools, and the eight criteria worth testing before you sign anything.

    • ITAM
    • SAM
    • Cloud
    • Governance
    8 min
  17. Data Centre Asset Management Software, Without Fragmented Data Sets or Manual Processes

    Why data centre asset management tools built by acquisition leave you doing the work by hand, and what to demand instead for IBM, SAP and Oracle.

    • ITAM
    • SAM
    • Governance
    4 min
  18. The Power of Automated Software Asset Management Solutions

    Legacy ITAM and SAM tools slow change programmes down by demanding manual work at every step. Here is what automating discovery, licensing and cloud cost control actually removes — and what CerteroX automates today.

    • ITAM
    • SAM
    • Cloud
    • Governance
    6 min
  19. Manage Android Devices and iOS Across Your IT Ecosystem

    Mobile device management works properly when phones and tablets sit in the same inventory as everything else you own. Here is what CerteroX ITAM does with enrolled iOS and Android devices, and why the single record matters.

    • ITAM
    • Governance
    • Security
    6 min
  20. Enabling Accelerated Digital Transformation with ITAM, SAM and CAM

    Asset management either accelerates a change programme or quietly holds it up. The difference is whether your data is accurate on demand — and what your tools make you do by hand to get it.

    • ITAM
    • SAM
    • SaaS
    • Cloud
    • Governance
    6 min
  21. IT Hardware Asset Management and Microsoft's "New WannaCry" Security Threat

    When Microsoft patched a wormable Remote Desktop flaw serious enough to warrant emergency updates for Windows XP, the hard part was not the patch. It was working out which machines you owned that needed it. That is a hardware asset management problem, and it has not gone away.

    • ITAM
    • Governance
    • Security
    5 min
  22. Salesforce: How to Reduce and Control the Rising Cost of Cloud Applications

    Salesforce instances grow wild — leavers keep their seats, admins install AppExchange packages nobody reviews, and the renewal arrives larger than anyone forecast. Where the waste actually accumulates, and the controls that stop it recurring.

    • SaaS
    • Cloud
    • Governance
    • FinOps
    7 min
  23. Are Incumbent ITAM and SAM Tools Restricting Your Business Objectives?

    Fragmented functionality, lengthy implementations and datasets that have to be stitched together by hand. Why the architecture of a legacy ITAM or SAM tool becomes your problem, and what a single data model changes.

    • ITAM
    • SAM
    • Governance
    6 min

2018 3 posts

  1. Oracle Java License Change – Are you prepared for a new wave of audits?

    The 2019 change that ended free public updates for commercial use of Java SE 8, what happened in the years that followed, and how to build a Java deployment record that survives contact with an auditor.

    • ITAM
    • SAM
    • Governance
    8 min
  2. Has the industry created a SAM merry-go-round?

    Software asset management needs both technology and skilled people, but the industry has polarised into tools that over-promise and services that bill by the day. A look at why customers keep going round in circles, and what actually breaks the cycle.

    • ITAM
    • SAM
    • Governance
    6 min
  3. Are you getting value from your SAM solution?

    A practical checklist for judging whether your software asset management platform and provider are earning their keep — and a realistic look at what you can actually do about it when the answer is no.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min

2017 8 posts

  1. Oracle Audit – A Beginner's Guide to Licensing Audits

    What an Oracle licence review actually is, how the audit process runs from the notification letter onwards, and what to have in place before it arrives.

    • ITAM
    • SAM
    • Governance
    5 min
  2. Gain a Complete IT View: Integrating ITSM with SAM

    Why a CMDB populated only from your service management tool will always be incomplete, and what changes when asset and licensing data feeds it directly.

    • ITAM
    • SAM
    • SaaS
    • Cloud
    • Governance
    5 min
  3. Eight ways mature software asset management minimises security risk

    SAM is usually justified on licence cost and audit exposure. The security case is stronger and less often made: you cannot secure software you cannot see, name or date.

    • ITAM
    • SAM
    • Governance
    • Security
    8 min
  4. Ten things you need from a SAM services provider

    An advanced SAM programme needs technology and process. If you are buying the process from someone else, these are the ten things worth checking before you sign.

    • ITAM
    • SAM
    • Governance
    7 min
  5. Is the Microsoft Products and Services Agreement (MPSA) right for you?

    The MPSA is an evergreen, transactional agreement built around purchasing accounts and pooled points. Here is how the structure works, where it beats an Enterprise Agreement, and what you need in place before you sign anything.

    • SAM
    • Governance
    5 min
  6. Benefits of a self-service app store: from reducing shadow IT to enhancing IT security

    A corporate app store gives users the frictionless experience they already expect and gives IT the control it keeps losing. It reduces shadow IT, improves licence compliance, tightens security and cuts service desk load — but only if it also covers the SaaS people reach through a browser.

    • ITAM
    • SaaS
    • Governance
    • Security
    8 min
  7. Why the CerteroX Platform Will Better Help You Manage All Your IT Assets

    A companion to our piece on why a single platform matters. This one looks at how CerteroX is actually built — one data model, five products, and the design decision underneath both.

    • ITAM
    • SAM
    • Governance
    7 min
  8. Why a Single Platform to Manage Your IT Assets Is Important

    Asset management got harder one asset class at a time, and most organisations answered each one with a separate tool. The result is a stack of disconnected systems and no single view. Here is why that architecture is the problem, not the symptom.

    • ITAM
    • SAM
    • Governance
    6 min

2016 50 posts

  1. The Internet of Things and IT Asset Management

    The 2016 Mirai botnet took websites offline using unsecured CCTV cameras. The lesson for IT asset management has not changed: you cannot secure a device you have never discovered.

    • ITAM
    • Governance
    • Security
    4 min
  2. Software Acquisition — How Can It Go Wrong?

    Acquisition is the first step in software asset management, which makes it the one where mistakes compound. Buying outside the agreement, buying through the wrong reseller, and deploying the wrong version to the wrong device all start here.

    • SAM
    • SaaS
    • Governance
    5 min
  3. SAP Licensing, Indirect Access and the Internet of Things

    In 2016 the UK & Ireland SAP User Group asked SAP to define what indirect usage actually means once machines start talking to the ERP. SAP answered in 2018, and the answer changed the maths.

    • ITAM
    • SAM
    • Governance
    6 min
  4. Microsoft Licensing Update — The Secure Productive Enterprise Offer

    Microsoft bundled Office 365, Windows 10 Enterprise and Enterprise Mobility + Security into a single SKU in late 2016. The bundle has been renamed twice since, and the licensing problem it created has not changed at all.

    • SAM
    • Governance
    • Security
    6 min
  5. Common Oracle Software Licensing Issues – Part II

    The technical half of the Oracle compliance problem: proving actual usage, indirect access through non-Oracle applications, the hard and soft partitioning rules that turn a virtualisation saving into an audit finding, and assembling the Oracle Server Worksheet.

    • ITAM
    • SAM
    • Governance
    6 min
  6. Common Oracle Software Licensing Issues – Part I

    Why Oracle licensing goes wrong before anyone touches a server: tailored agreements that drift, the difference between a processor and a core, obsolete licence metrics still in use, duplicate named users, and options that are enabled by default whether you bought them or not.

    • SAM
    • Governance
    5 min
  7. Don't Play Russian Roulette with Indirect Access Licensing

    Indirect access is where a licence bill arrives for users you never counted, because they reached the system through something else. What multiplexing looks like, how each publisher treats it differently, and how to identify it before a true-up does.

    • SAM
    • Governance
    6 min
  8. Why Normalised Software Inventory is Important

    A raw discovery list is not an inventory. Why inconsistent titles, editions and publishers make software data unusable for licensing decisions, and what normalisation has to do before the data is worth acting on.

    • ITAM
    • SAM
    • Governance
    6 min
  9. Understanding IT Asset Control – Tracking IT Assets

    Discovery tells you what exists. Control is a process problem, and it breaks at the two ends of the lifecycle — how assets get authorised, and what happens when a person leaves. What to automate at each end.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min
  10. The Key Issues Behind IT Asset Identification

    If you cannot measure what you have, you cannot manage it — and you certainly cannot defend it. The four things that most often break IT asset identification: tool sprawl, incomplete discovery, missing attributes, and entitlement nobody can produce.

    • ITAM
    • SAM
    • Governance
    6 min
  11. Software Licence Optimisation – Going Beyond Compliance

    Compliance tells you whether you are safe. Optimisation tells you whether you are wasting money. They are different questions, and only one of them is answered by buying more licences.

    • ITAM
    • SAM
    • Governance
    5 min
  12. Do You Understand the Risks of Using Software?

    Software is an asset with unusual properties — it can be acquired by anyone in seconds, it leaves no physical trace, and the paperwork proving you are entitled to it is easy to lose. Each of those is a distinct commercial risk.

    • SAM
    • SaaS
    • Governance
    5 min
  13. Creating a SAP Effective Licence Position (ELP)

    SAP's own LAW and USMM reports were built to help SAP settle a true-up, not to help you optimise. What an Effective Licence Position actually requires, and the four things LAW will never tell you.

    • SAM
    • Governance
    5 min
  14. The Challenges of SAP Licensing

    Your SAP system already holds most of the data an Effective Licence Position needs. The difficulty is extraction, normalisation and two specific traps — duplicate accounts across systems, and users who never log in but still consume a licence.

    • SAM
    • Governance
    5 min
  15. Understanding the SAP Software Environment

    SAP does not licence by installs, servers or CPUs. It licences named users by access rights — and the licence you assign does not restrict what the user can do. That single asymmetry is where SAP overspend comes from.

    • SAM
    • Governance
    6 min
  16. Five Steps to Rolling Out PC Power Management Across Your Organisation

    Desktop and laptop energy is one of the few IT savings you can measure before and after with real numbers. The hard part is not the technology — it is the business case, the IT buy-in and the policy design.

    • ITAM
    • Governance
    6 min
  17. BSA Continues its Push Against Unlicensed Software in Australia

    Asia Pacific has the highest rate of unlicensed software use in the world, and the BSA has been settling cases in Australia and paying rewards to the employees who report them. What that means for anyone without a defensible licence position.

    • SAM
    • Governance
    • Security
    5 min
  18. Is Being SAM Tool-agnostic a Good Thing?

    Tool-agnostic consultancy sounds like independence. In practice it often means abandoning the platform you already paid for and rebuilding your licence position by hand in a spreadsheet — which is out of date the day it is signed off.

    • SAM
    • Governance
    5 min
  19. Shadow IT will make organisations more agile and user centric

    Shadow IT is a signal before it is a threat — people route around IT when provisioning is too slow. Self-service removes the reason it happens. Discovery tells you where it already has.

    • ITAM
    • SaaS
    • Governance
    6 min
  20. Developing a SAM plan to control software licensing

    A software asset management plan is four decisions, not a document: what you actually need, what you standardise on, where the entitlement evidence lives, and how software and hardware are mapped to each other.

    • ITAM
    • SAM
    • Governance
    6 min
  21. Why, as a CFO, is software asset management important?

    Software is now one of the largest and least controlled lines in the budget. Software asset management is the discipline that makes it forecastable — and it reduces risk at the same time.

    • SAM
    • Governance
    • FinOps
    7 min
  22. Broad and Vague Audit Clauses may be Unenforceable

    An English High Court ruling on a licence audit clause set out how precisely audit rights have to be drafted to be relied on. The checklist it produced is worth running against your own publisher agreements before the next audit letter arrives.

    • SAM
    • Governance
    5 min
  23. Understanding your SAM Maturity Level

    A SAM maturity assessment gives you a point-in-time benchmark and a plan to improve on it. What the four maturity levels mean, what a proper assessment covers, and why the scope of that assessment now has to reach SaaS, cloud and AI.

    • ITAM
    • SAM
    • Governance
    7 min
  24. Protecting your mobile devices with geo-fencing

    A geo-fence turns a location into a control. Here is what geo-fencing actually does to a mobile device that leaves its assigned site, what it does not do, and how to set the boundaries so the alerts mean something.

    • ITAM
    • Governance
    • Security
    6 min
  25. Oracle partitioning and virtualisation — managing the complexity

    Virtualisation saves money until Oracle disagrees about what you have licensed. The distinction between hard and soft partitioning is where that argument is won or lost, and it turns on data most organisations do not collect.

    • ITAM
    • SAM
    • Governance
    8 min
  26. How software licence management benefits IT security

    The inventory you build to survive an audit is the same inventory your security team has been asking for. Unsupported versions, unpatched installs, unauthorised software and forgotten access are licensing problems and security problems at the same time.

    • SAM
    • SaaS
    • Governance
    • Security
    7 min
  27. The benefits of a corporate app store

    A self-service catalogue with approval built in gives users software faster, gives IT its afternoons back, and gives the organisation a record of who asked for what and why. The last of those is the one that pays.

    • ITAM
    • SAM
    • SaaS
    • Governance
    7 min
  28. Reducing costs by optimising your software licences

    An effective licence position keeps you compliant. It does not, on its own, make you cheaper. Optimisation is what turns compliance work into money back — and it runs on two things, use rights and usage data.

    • ITAM
    • SAM
    • Governance
    5 min
  29. The MEGABYTE Act becomes law

    A bipartisan US bill made software licence management a statutory obligation for federal agencies, with automated discovery written into the text. The reasoning behind it applies well beyond government.

    • ITAM
    • SAM
    • Governance
    5 min
  30. Controlling device-based licensing in Citrix

    Publishing an application to a restricted user group in Citrix does nothing for a per-device licence. The control has to be enforced where the licence is measured — at the device — and you have to be able to prove it was.

    • ITAM
    • SAM
    • Governance
    4 min
  31. Device Power Is a Cost Line and a Carbon Line. Most Organisations Measure Neither.

    The original 2016 version of this post reported a customer survey we can no longer substantiate. What survives is the argument underneath it: idle computing is one of the few costs you can remove without anyone giving anything up — and you cannot schedule what you have not discovered.

    • ITAM
    • Cloud
    • Governance
    6 min
  32. Understanding SAP Licensing

    SAP licenses on usage, then declines to define usage precisely. Named user types, package metrics measured on business volume, and the two things that have changed most since this was written — document-based Digital Access and the move to S/4HANA.

    • SAM
    • Governance
    6 min
  33. Avoiding Microsoft Software Piracy

    The five ways unlicensed Microsoft software gets into an organisation — hard disk loading, unauthorised downloads, standalone certificates, leaked volume keys and auction-site resale — updated for a world where almost none of it arrives on a disc.

    • SAM
    • Governance
    • Security
    7 min
  34. Implementing SAM Policies and Procedures

    Once the inventory is done, the work is stopping the same mess reassembling. Four policies worth writing — acquisition, use, intake and recovery — plus the two the original list predates: SaaS purchasing and leaver offboarding.

    • SAM
    • SaaS
    • Governance
    7 min
  35. The challenges of implementing SAM

    The obstacles to a working software asset management programme fall into three groups — inventory, entitlement and the organisation itself. Two of them are now largely solvable with tooling. The third still is not.

    • ITAM
    • SAM
    • Governance
    8 min
  36. Understanding software licensing terminology

    A plain-English glossary of the terms you meet when you take on software licensing — the disciplines, the contract language, and the newer vocabulary that SaaS, cloud and AI have added to the list.

    • ITAM
    • SAM
    • Governance
    9 min
  37. The benefits of a bring your own device (BYOD) policy

    BYOD is usually argued for on cost, productivity and morale. All three hold up — but only if you can still see what the devices are doing, which is the part the policy rarely covers.

    • ITAM
    • SaaS
    • Governance
    • Security
    8 min
  38. The challenges of enterprise mobile management

    Enrolment, platform diversity and device security were the three things that made mobile management hard. Two of them have changed shape completely, and the third answer is no longer a separate product.

    • ITAM
    • Governance
    • Security
    5 min
  39. Understanding a baseline review

    A baseline review is how you get to a defensible Effective Licence Position for one publisher. Here is what the five stages actually involve, and which of them you should never have to run again.

    • ITAM
    • SAM
    • Governance
    6 min
  40. SAM in the data centre

    The desktop is the easy half. Data centre software licensing breaks on three things — publisher metrics, platform variety and virtualisation — and generic discovery tools fail on all three.

    • ITAM
    • SAM
    • Governance
    6 min
  41. The trouble with Microsoft 365 licensing

    Moving from device-licensed Office to per-user Microsoft 365 subscriptions solves the version problem and creates a different one. Here is what changes commercially, what to negotiate before you sign, and what you have to measure afterwards.

    • SAM
    • SaaS
    • Governance
    7 min
  42. Mobile Device Management Is a Real Blind Spot

    Most organisations that buy mobile device management software never make it mandatory. The gap is almost never the tooling — it is the absence of a policy that applies to every department without exception.

    • ITAM
    • Governance
    • Security
    5 min
  43. Building a Business Case for Software Asset Management

    Compliance, efficiency and agility is a better frame for a SAM business case than governance and risk. The hard part is costing the benefit — which is now something the tooling can do for you.

    • SAM
    • Governance
    • FinOps
    6 min
  44. Defending against a software audit: what you need to know

    An audit letter is not an emergency, it is a project. Five stages — governance, communication, inventory, entitlement and the effective licence position — and the order you do them in decides the outcome.

    • ITAM
    • SAM
    • Governance
    6 min
  45. Windows Server 2016 and the move to core-based licensing

    Windows Server 2016 moved Standard and Datacenter Edition from processors to physical cores, with two-core packs and per-server minimums. Ten years on, that model still governs how Microsoft server licensing is counted — and it is still counted wrong.

    • SAM
    • Governance
    4 min
  46. Building a SAM function within your organisation

    Six steps to standing up software asset management: maturity, business case, tooling, process, audit readiness and team. One of them has changed fundamentally since the framework was written.

    • ITAM
    • SAM
    • Governance
    7 min
  47. Improve software deployment and ensure compliance

    Getting software to people quickly, keeping it secure and staying licensed are usually treated as three problems. Self-service deployment turns them into one process, with the approval, the entitlement check and the audit record all captured at the moment of request.

    • ITAM
    • SAM
    • SaaS
    • Governance
    6 min
  48. Software and virtualisation licensing: the hidden risks

    Virtualisation saves money on hardware and quietly changes what you owe on software. Small changes to a cluster — a host added, a VM allowed to move — can move a licence position by a large amount. Here are the questions to ask before you build, and what can now be tracked automatically.

    • ITAM
    • SAM
    • Governance
    6 min
  49. Software use rights 101: the different scenarios

    Your right to use software comes from the agreement, not from the install. Upgrade, downgrade, virtualisation, secondary use, disaster recovery and multiple installations are the six scenarios that decide most licence positions — and the six that spreadsheets get wrong.

    • ITAM
    • SAM
    • Governance
    6 min
  50. Why Use Yesterday's Technology to Meet Today's Needs?

    Every software product has a shelf life. Written when Certero rebuilt its products from the ground up rather than bolting old ones together — and updated to describe what that rebuild actually became.

    • ITAM
    • SAM
    • Governance
    6 min
Beyond the reading

Every argument here
is checkable against the product.

Posts about visibility, licensing and cost only matter if the platform behind them holds up. Bring the hardest claim on this page and put it to a technical person with the product open.

Nothing is gated, and reading a post does not put you on a scoring model or a call list.