Skip to content

Gartner Myth Buster – Part 1

A third-party summary of a vendor can be wrong, and it stays wrong for as long as people read it. The case for checking a vendor's facts at source — and the current, sourced record for Certero.

This post began life as a point-by-point response to an analyst report on SAM tools that described Certero in terms the company did not recognise. The specific report is long superseded, and reproducing an analyst firm’s commentary is not something we are licensed to do, so the line-by-line rebuttal is not republished here.

The underlying argument still holds, and it is worth restating plainly.

A third-party summary of a vendor is a secondary source. It is written at a point in time, sometimes without the vendor’s participation, and once published it is read by people making a shortlist for as long as it stays online. If it is wrong, the vendor is the last party able to correct it and the buyer is the one who pays for the error — by excluding a capable product, or by including one that does not do what the summary said.

The remedy is not to argue with the summary. It is to check the vendor at source, and to insist on facts a vendor can evidence. What follows is Certero’s record set out that way: each claim with something behind it.

Where the company actually operates

Certero Limited is a UK company, registered as company number 06387180 and incorporated on 2 October 2007. It has been privately owned and independent throughout. That is a matter of public record at Companies House rather than something you have to take on trust.

It runs from three offices:

  • UK and International HQ — Cedarwood 2, Kelvin Close, Birchwood, Warrington, WA3 7PB, United Kingdom.
  • North America — 77 West Wacker Drive, Suite 4500, Chicago, IL 60601, United States.
  • APAC — 56 Berry Street, North Sydney NSW 2060, Australia.

Three offices across three regions is what makes follow-the-sun support possible with people in the customer’s own time zone rather than a queue into one country. Published customer work spans those regions too — NHS South West London ICB and East of England Ambulance Service in the UK, Skagit Regional Health in the United States — and each of those is a published case study rather than a reference we are describing on someone’s behalf.

What the portfolio is

The most common factual error made about a vendor is describing the wrong product set. Certero’s has been deliberately consolidated: what was once a long list of separately named products is now five, on one platform, over one data model.

  • CerteroX ITAM — hardware and device discovery and inventory across Windows, macOS, Linux, IBM AIX, HP-UX and Oracle Solaris, plus mobile management for iOS and Android, software distribution, WSUS-integrated patching, the App-Centre self-service portal and Passworks self-service password reset.
  • CerteroX SAM — licensing and audit defence, with dedicated engines for Microsoft, Oracle, IBM, SAP, Adobe and Salesforce, and a continuously computed effective licence position.
  • CerteroX SaaS Management — subscription discovery, usage evidence, licence reclamation and offboarding, with 47 vendor connectors shipping today.
  • CerteroX Cloud Management — FinOps across twelve cloud and data platforms, with twenty-six named optimisation checks and native FOCUS support.
  • CerteroX AI Management — models, experiments, GPU fleets and AI seats governed as an asset class, including Shadow AI detection.

Two things follow from that list which are easy to miss from the outside. The first is scope: it runs from a mobile handset to a Unix frame in a data centre to a cloud account, and it is one record, not five that have to be reconciled. The second is that the depth is where the money is. A generic tool will tell you that Oracle Database is installed 400 times. It will not tell you which options and packs are enabled, which cores are licensable under which core factor, or which hosts are covered down by an Enterprise Edition pool — and that gap is exactly where an audit finding lives.

On customer satisfaction

The one thing the original report got right, on the author’s own account, was that customers rate the support highly.

That is corroborated independently. Certero was named Customers’ Choice in the 2024 Gartner® Peer Insights™ Voice of the Customer for Software Asset Management Tools — the only vendor in the category to reach that position.

On brand awareness

Some criticism is fair, and this one was. Certero was less visible than its capability warranted, and the reason was a deliberate choice: a period of low sales and marketing activity between 2013 and 2017 while the current technology stack was being built.

That is a trade-off, not a defence. It is worth naming because it explains a genuine asymmetry a buyer will notice — a product set that is more capable than its market profile suggests — and because the alternative explanation, that the product was not ready, is the one a shortlist will assume if nobody says otherwise.

On tools versus services

Certero sells both products and services, and a buyer who wants only a tool sometimes reads that as a dependency. It is not one. The products do not require the services to function. Where an organisation does want licensing expertise — an Oracle certification, an SAP position, an audit response — it is available, and where it does not, the platform stands on its own.

What to ask any vendor, including us

If the argument of this post is that you should verify rather than accept, then the useful part is the list of things you can verify. For any shortlist:

  • Ask for the registration. A company number and an incorporation date are public. So is the ownership structure.
  • Ask where support is delivered from, and in which time zones, rather than where the vendor has a mailing address.
  • Ask what ships today versus what is on the roadmap, and get the number for each. Connector counts in particular are routinely quoted with the roadmap included. Ours is 47 SaaS connectors shipping now.
  • Ask for the certifications and check them. Certero holds ISO 27001:2022, Cyber Essentials Plus — the highest level of the UK NCSC scheme — and a SOC 2 Type 1 attestation, and is a FinOps Certified Platform and FinOps Certified Service Provider, listed by the FinOps Foundation.
  • Ask about publisher verification where it exists. Certero is a verified third-party tool vendor under Oracle License Management Services, which means Oracle’s audit team can accept data from Certero during an official audit as an alternative to installing Oracle’s own measurement tools. That is a claim Oracle can confirm, which is what makes it worth making.
  • Ask for published customers, with the outcome stated, rather than a logo wall.

Accuracy of information is the basis of any sound purchasing decision. So rather than rely on a summary that may be out of date, check the source — ours or anyone else’s.


GARTNER is a registered trademark and service mark, and PEER INSIGHTS is a trademark and service mark, of Gartner, Inc. and/or its affiliates in the U.S. and internationally and are used herein with permission. All rights reserved. Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates.

Related reading

Other posts covering the same ground.

  • Device-based licensing and access control

    Locking an application down at user level does not make you compliant with a per-device licence. In a Citrix or RDS environment, one user with access can cost you a licence for every device in the organisation.

    • ITAM
    • SAM
    • Governance
    4 min
  • The role of good data in software audits

    An audit is won or lost on the quality of your inventory long before the letter arrives. Six ways data goes wrong, and what it takes to have the answer already in hand.

    • ITAM
    • SAM
    • Governance
    8 min
From reading to evidence

Put the hardest claim here
to a technical person.

Everything argued above is checkable. Name the publisher, the billing account or the platform you would argue with, and the session is built around it — the reasoning attached, not a summary slide.

No gated download at the end of it.