Software Licensing & Asset Management
The footer and the services hub call this "License Compliance". It answers three questions: what do you own, what are you using, and what do you actually need?
Establishing what software and licences the organisation holds
Comparing entitlements against actual deployment and use
Identifying over-licensing and unnecessary renewals
Reducing unplanned spend and administrative confusion
Preparing for audits and renewals with clearer records
Understanding where licensing and technology choices overlap
Areas We Can Review
On the technology side, a review can cover:
Identity and access
Security controls
Endpoint protection
Network security
Backup and recovery
Infrastructure resilience
Documentation
Administrative access
Monitoring
Technology policies
Operational procedures
Assessment-Based Approach
We begin with the actual technology environment rather than with a questionnaire.
The objective is to identify what exists, what is missing, what requires improvement and what should be prioritised — with every finding ranked High, Medium or Low.
A control that is documented but not working is a finding, not a control.
Technology Risk
Technology risk is not only about cybersecurity. It can also involve:
Single points of failure
Unsupported systems
Weak backup arrangements
Poor access controls
Inadequate documentation
Unmanaged devices
Network weaknesses
Lack of recovery procedures
Several of these are invisible until the day they matter. That is the argument for finding them deliberately.
What This Is and Is Not
Felix Core works on the technology side of compliance: the controls, the configuration, the documentation and the evidence that the technology environment can produce.
We are not a legal advisor, an auditor or a certification body. We do not issue certifications or sign off on compliance. Where a formal audit, legal opinion or certification is required, that remains with your auditor, your legal advisors or the relevant certification body — and our work is intended to make their job shorter.
Related Services
Compliance and risk work usually touches these:
Cybersecurity
Endpoint, identity, network and Microsoft security, with practical risk reduction.
Microsoft Services
Identity, access, device management and licence allocation across the Microsoft estate.
Managed IT Services
Ongoing management, documentation and review that keeps controls in place over time.
Need a Clearer View of Your Technology Risks?
Let's assess your environment and identify practical improvement priorities.