Skip to content

Certero Drives Clarity and Software Optimisation Within the Healthcare Sector

Healthcare IT teams routinely run without an asset inventory, a compliance position or an owner for either. This is what it takes to go from no visibility to a single record of truth — and what published NHS and healthcare customers report.

In healthcare, clarity is not an administrative nicety. Procurement decisions, compliance exposure and refresh budgets all depend on knowing what you own and who is using it. Yet IT Asset Management is one of the most common gaps in the sector, and the shape of the gap is remarkably consistent.

The starting point: no visibility at all

The pattern looks like this. There is no central asset system. There is no governance around asset lifecycle, and no single record of truth. Hardware is tracked in spreadsheets held by different teams, software compliance is unknown until a publisher asks, and nobody can say with confidence who is using what, where, or why.

IT operations end up fragmented and reactive. Tooling decisions get made in isolation, which duplicates effort and quietly builds in inefficiency. The team is usually not the problem — public healthcare IT teams tend to be under-resourced and under pressure, working without the instrumentation the job requires.

What is needed is more than an inventory tool. It is a foundation that other IT tooling and business processes can align to.

What healthcare IT teams need from an ITAM platform

Five criteria come up repeatedly in this sector, and they are worth spelling out because they are not the criteria a generic feature comparison would surface.

Ease of use. Where there is no existing platform and no mature ITAM process, the tool has to be usable by IT and non-IT stakeholders alike. Dashboards are personal or role-shared, and reporting can be delivered on a schedule rather than requiring someone to log in and build it.

Dynamic grouping and metadata. CerteroX ITAM supports dynamic, static and custom groups built through a query builder or SQL, so devices organise themselves by ownership, lifecycle stage, location or any local attribute. Custom fields carry organisation-specific taxonomy, so the data speaks the internal terminology rather than the vendor’s.

Licensing depth. Healthcare organisations carry significant spend with Microsoft and other Tier 1 publishers. CerteroX SAM computes an Effective Licence Position continuously — purchased, used, available, required, variance and exposure — with device and user CALs, server core and processor licensing, cluster and virtualisation awareness, downgrade rights and Microsoft Licence Statement import. Usage metering over a rolling 90-day window is what turns that from a compliance report into a reharvesting plan.

Modular architecture. Capability can be added as maturity and budget allow. ITAM, SAM, SaaS Management, Cloud Management and AI Management sit on one platform and one data model, so adding a discipline extends the same record rather than starting a new one.

Professional services that hand the platform back. In the first year, the value of a services engagement is stabilisation and building a working model of ITAM practice. The measure of whether it worked is whether the internal team can run it themselves in year two.

From nothing to a single record of truth

Implementation starts with discovery and inventory. CerteroX ITAM discovers through ten methods — native agent across Windows, macOS, Linux, AIX, HP-UX and Solaris, agentless and command-line inventory for locked-down machines, standalone inventory for offline systems, network scan, Active Directory import, third-party ITAM import, cloud and SaaS connectors, browser monitoring and file metering. Network Discovery sweeps a class-C subnet in under five seconds, which matters when sites are numerous and poorly documented.

The output is not a device list. It is actionable data:

  • Custom fields hold organisation-specific intelligence against each asset, so the taxonomy matches internal workflows
  • Location data on devices and users shows exactly where assets are deployed, which supports logistics, audit and redeployment
  • Reporting Levels restrict visibility by organisational unit or location, so each site sees its own position without seeing everyone else’s
  • Duplicate system detection and stale device archiving keep the record honest as it ages
  • Warranty retrieval and expiry tracking, plus end-of-life and end-of-support dates from the Software Recognition Service, drive the refresh plan

What changes once the data is trustworthy

Licence optimisation. An Effective Licence Position that updates continuously lets you reharvest unused entitlements before renewal rather than buying to cover a number nobody trusts. The Exclude From Licensing workflow removes development, training and second-use devices from the count instead of letting them inflate it.

Lifecycle discipline. A structured hardware lifecycle brings order to how assets are acquired, deployed, supported and retired — and makes the retirement step something that actually happens.

Governance and collaboration. Governance Policies express compliance as code with a reusable filter builder: BitLocker enabled, Defender running, tag hygiene on cloud instances. Policies export and import as JSON, so a standard can be shared between organisations rather than rebuilt. Role-based access control and Zones let IT, procurement and operational teams each hold their part without stepping on each other.

Strategic planning. Once the data is reliable enough to trust, it starts informing budgeting: refresh cycles, software renewals and project-based investment forecast from the inventory instead of from memory.

What healthcare customers have published

Rather than repeat outcomes we cannot evidence, here are the healthcare and emergency services customers Certero publishes, with their own words.

NHS South West London ICB mitigated £100k of Microsoft compliance risk and accelerated three to four years of SAM maturity.

Certero’s SAM managed service allowed us to significantly mature our license posture at a fast pace, something that would have taken 3-4 years without their involvement.

— Reece Emson, ITAM Asset/PSL Manager

East of England Ambulance Service brought 130 sites into view.

The tool has truly transformed how we work, making life a lot easier with complete visibility of assets and automation removing the need for manual intervention.

— Andy Marrs, IM&T Security & Resilience Manager

Skagit Regional Health manages more than 5,500 devices.

When we reviewed the responses to the initial RFP, Certero offered the best solution for our requirements.

— Project Management Office Lead

An NHS Commissioning Support Unit uses the platform in support of more than 100 NHS organisations.

A model for ITAM in healthcare

The move from no visibility to a single record of truth is not primarily a tooling exercise. It is the point at which asset data becomes reliable enough that other decisions can rest on it — procurement, refresh, compliance, security posture.

For healthcare providers facing rising costs, strict compliance requirements and growing digital demand, that reliability is the thing worth buying. Where every pound is contested and patient care is the priority, clarity about what you own and what you are paying for is not a luxury.

Related reading

Other posts covering the same ground.

  • Device-based licensing and access control

    Locking an application down at user level does not make you compliant with a per-device licence. In a Citrix or RDS environment, one user with access can cost you a licence for every device in the organisation.

    • ITAM
    • SAM
    • Governance
    4 min
  • Gartner Myth Buster – Part 1

    A third-party summary of a vendor can be wrong, and it stays wrong for as long as people read it. The case for checking a vendor's facts at source — and the current, sourced record for Certero.

    • ITAM
    • SAM
    • Governance
    7 min
  • The role of good data in software audits

    An audit is won or lost on the quality of your inventory long before the letter arrives. Six ways data goes wrong, and what it takes to have the answer already in hand.

    • ITAM
    • SAM
    • Governance
    8 min
From reading to evidence

Put the hardest claim here
to a technical person.

Everything argued above is checkable. Name the publisher, the billing account or the platform you would argue with, and the session is built around it — the reasoning attached, not a summary slide.

No gated download at the end of it.