Gain a Complete IT View: Integrating ITSM with SAM
Why a CMDB populated only from your service management tool will always be incomplete, and what changes when asset and licensing data feeds it directly.
- ITAM
- SAM
- SaaS
- Cloud
- Governance
Asset management either accelerates a change programme or quietly holds it up. The difference is whether your data is accurate on demand — and what your tools make you do by hand to get it.
Expectations move faster than organisations do. The devices and applications people use outside work have raised the standard for what they will tolerate inside it, and meeting that standard usually means changing how the business operates, not just what software it runs.
That is expensive and risky work, and it touches everything. Once new processes have been mapped, IT has to make them real — building and deploying the new, retiring the old, and keeping the lights on throughout.
Three disciplines govern that work: IT asset management for hardware, software asset management for licensing, and cloud asset management for what you rent rather than own. In CerteroX these are CerteroX ITAM, CerteroX SAM and CerteroX Cloud Management, joined by CerteroX SaaS Management and CerteroX AI Management for the asset classes that have appeared since. They are worth naming separately, because a transformation programme can be held up by any one of them independently.
Programmes rarely stall on the interesting problems. They stall waiting for information.
Which servers can be decommissioned, and what is still talking to them. Which licences transfer, which are tied to hardware, and which will be re-purchased by accident. What the current cloud spend is by team, before anyone can tell whether the migration saved money. Which applications the business is already using that nobody procured.
Every one of those is an asset management question. And if answering it takes three weeks of manual data assembly, it does not matter how good the rest of the programme is — the programme moves at the speed of its slowest dependency.
This is the sense in which asset management either inhibits or enables transformation. Old tools inhibit it by making every answer a project. They require manual processes and data entry, which increases the risk of human error and produces poor-quality outputs, slower and at higher cost. The information is technically available; it is just never available in time to act on.
The distinction is easier to see as a set of criteria. These are the things worth testing a tool against, rather than the things a vendor will tell you it does.
| What to test for | Inhibitor | Enabler |
|---|---|---|
| Discovery runs automatically, without manual data entry | No | Yes |
| Inventory is current on demand, not assembled per report | No | Yes |
| One normalised data model across hardware, software, SaaS and cloud | No | Yes |
| Every device class in the same schema, from mobile to Unix to cloud | No | Yes |
| Publisher-specific licence engines, not generic install counts | No | Yes |
| SaaS, PaaS and IaaS in the same view as everything else | No | Yes |
| Analysis built in, rather than exported to a spreadsheet | No | Yes |
| Reporting you can shape yourself, without a professional services engagement | No | Yes |
| Policy that evaluates continuously, rather than a periodic review | No | Yes |
The rows are not equally hard. Automated discovery is table stakes. A single normalised data model across all four asset classes is where most tools quietly fail, because they were assembled from acquisitions and the data model reflects it.
CerteroX ITAM runs ten discovery methods — a native agent, command-line inventory, agentless collection, standalone inventory for air-gapped systems, Active Directory import, network scan, third-party ITAM import, cloud and SaaS connectors, browser monitoring and file metering — across six operating system families. Windows, macOS, Linux, AIX, HP-UX and Solaris all get the same agent and the same inventory cycle, which matters during a migration precisely because the awkward platforms are the ones that hold programmes up.
CerteroX SAM computes the effective licence position continuously against dedicated engines for Microsoft, Oracle, IBM, SAP, Adobe and Salesforce. During a change programme that is the difference between knowing what a decommissioning decision does to your compliance position and finding out afterwards.
Both resolve to the same records. So does everything below.
In 2019 the argument for including SaaS and cloud was a forward-looking one. It is not any more.
CerteroX SaaS Management discovers applications through three converging signals — identity provider sync from Entra ID and Okta, vendor API connectors, and a browser extension that attributes time-on-app per user — against a catalogue of more than 35,000 applications, with 47 connectors shipping today. It finds unused licences at 30 or more days of zero usage, ranks overlapping applications by recoverable saving, and closes the offboarding gap with a per-user checklist showing every licence held and whether revocation is pending, in progress or complete.
It also detects Shadow AI, which was not a category anyone was managing when this article was first published. AI tools are classified from application feature tags in the catalogue rather than from a hardcoded list, so the detection set grows on its own, and adoption risk is ranked by the share of the organisation using each tool.
CerteroX Cloud Management covers the infrastructure side across twelve cloud and data platforms, with 26 individually tunable optimisation checks and native support for FOCUS, the FinOps open cost and usage specification. Certero’s average customer saving across cloud environments under management is 38%.
The reason this matters to a transformation programme is simple: the things you are migrating to are SaaS and cloud. A tool that governs only what you are migrating away from can tell you what the change cost you, but not what it bought.
The last row in the table is the one people skip, and it is the one that decides whether the gains survive contact with the following year.
Change programmes create sprawl. New accounts, new subscriptions, new resources, new grants, all provisioned under deadline pressure by people who were right to move quickly. Without policy that runs continuously, the tidy-up becomes its own project eighteen months later.
CerteroX ITAM ships Governance Policies — compliance as code, with a reusable filter builder and named checks such as BitLocker enabled, Defender running and Azure VM tag hygiene, exportable as JSON. CerteroX Cloud Management adds expense anomaly detection against a rolling daily average, resource TTL with automatic lifecycle enforcement, tag compliance and correlation rules, and expense limits per resource or pool, with a violation history you can hand to audit.
Managing technological change requires complete visibility and control of the hardware, software, SaaS and cloud you run — and to accelerate change rather than survive it, that information has to be accurate on demand rather than assembled on request.
Tools that make you assemble it by hand are not neutral. They are a tax on every decision the programme has to make, paid in weeks.
To see what one data model actually looks like across IT assets, software, SaaS, cloud and AI, book a demo.
Other posts covering the same ground.
Why a CMDB populated only from your service management tool will always be incomplete, and what changes when asset and licensing data feeds it directly.
Hybrid IT broke the ITAM tools built for the data centre. What unified discovery, software recognition and governance actually have to cover when your assets span on-premises, virtual, cloud and SaaS — and how to test a vendor against it.
Two of the things that most reliably sink an audit defence — an entitlement record you cannot reconstruct, and the assumption that moving to the cloud removed the problem.
Everything argued above is checkable. Name the publisher, the billing account or the platform you would argue with, and the session is built around it — the reasoning attached, not a summary slide.
No gated download at the end of it.