A.5.9
Inventory of Information and Other Associated Assets
AssetSphere provides a comprehensive asset inventory in line with ISO 27001:2022 requirements, covering identification, documentation, and maintenance of the asset list.
IT Asset Management
Accurate IT Asset Inventory Is the Foundation of SecurityYou can't protect what you don't know about. AssetSphere gives you complete visibility over all your information-technology assets — from data-centre servers to software licenses.
AssetSphere
68%
Of security incidents begin with an undocumented or forgotten asset
Source: Axonius State of Asset Management 2023
30%
Of the average software-license budget is wasted on unused or duplicate licenses
Source: Gartner
47 days
Average time IT teams take to respond to a vulnerability without an accurate asset inventory
Compared with 9 days when the inventory is complete
Shadow IT is a real threat: devices connected to the network without IT's knowledge, software installed without approval, and cloud accounts created outside official procedure.
Without an accurate inventory, patch management becomes ineffective — you can't be sure every system is up to date if you don't know every system that exists. This creates an undetected window of vulnerability.
ISO 27001:2022 requires a comprehensive asset inventory (A.5.9) and responsible asset management (A.5.10). AssetSphere helps you meet both requirements efficiently.
A simple, structured process your team can run right away.
Add new assets through an intuitive, structured form with full detail: category, serial number, location, owner, and criticality. The onboarding team assists with initial data entry so the inventory is accurate from day one.
Categorise each asset by type, business value, and the sensitivity of the data it processes. Assign an asset owner responsible for its security and maintenance.
Track each asset's status from procurement, active use, and maintenance through to disposal. Replacement schedules and warranties are stored with automatic reminders.
Inventory the software installed across all endpoints. Get alerts when a license is about to expire, software is unlicensed, or a software version contains a known vulnerability.
Built to meet real operational needs — not just a checklist of features that look good in a brochure.
AssetSphere is designed to help your organization meet the relevant control requirements and information-security standards.
A.5.9
Inventory of Information and Other Associated Assets
AssetSphere provides a comprehensive asset inventory in line with ISO 27001:2022 requirements, covering identification, documentation, and maintenance of the asset list.
A.5.10
Acceptable Use of Information and Other Assets
Supports implementation of acceptable-use policies with clear ownership and a usage audit trail.
A.5.11
Return of Assets
Manage the return of assets when employees leave or contracts end, with a structured checklist and documentation.
A.8.x
Asset Management Controls
Supports the full set of asset-management controls in ISO 27001:2022 Annex A, including media handling and information classification.
The following SLAs apply to all AssetSphere Customers and form part of the mutually signed Service Agreement. All Customers receive full access to every platform feature.
* All SLAs are measured monthly and apply from the subscription activation date.
This platform is designed to address the real pain points of different roles across the organization.
Still have questions about AssetSphere? Reach out to our team via the contact page or the footer.
Assets are registered through an intuitive, structured form — simply fill in details such as asset category, serial number, location, owner, and status. For registering assets in bulk, the Cloudsphere onboarding team assists with the initial data entry so inventory records are accurate and consistent from day one.
AssetSphere records the software and operating-system versions of every registered asset. When a vulnerability requiring a patch emerges, you can quickly identify all affected assets based on the recorded versions. The IT team can build a structured patch plan and track completion status directly in the platform.
Retired assets aren't deleted from the system; instead they're marked 'Disposed', recording the date, disposal method, and responsible PIC. This history is important for the audit trail and compliance.
Yes. AssetSphere supports user-assigned assets with a check-in/check-out feature that records temporary changes of custody — ideal for devices taken out of the office.
Yes. AssetSphere supports multi-location asset management with grouping by office location, building, or department. Managers at each location can have visibility appropriate to their scope, while central management retains an overall view of the inventory.
Schedule a free demo and see firsthand how AssetSphere can simplify it asset management in your organization.