Assets
Assets register
An assets register records hardware and software ownership, custody, lifecycle status, and review context.
Updated 24 July 2026
What it means
An assets register is a maintained list of hardware and software records. It records what the asset is, who owns or holds it, where it is, what lifecycle status it is in, and when it was last reviewed. For software assets, it may also connect to renewal and vendor context. For hardware, it may include site, location, status, and custody notes.
Why it matters
Lean teams often have asset facts spread across spreadsheets, purchasing systems, MDM tools, and memory. An assets register gives governance context: who is responsible, what is active, what is retired, what is lost or unknown, and where management should focus follow-up.
How CertPilot uses the term
CertPilot's Assets Register is manual-first with CSV import/export for hardware and software. It supports count-only evidence gaps and summary evidence in reports. It is not MDM, endpoint monitoring, ITAM automation, accounting depreciation, procurement software, or automatic SaaS discovery.
What to record
- Asset name, type, status, and lifecycle stage.
- Owner, custodian, location, or site context.
- Last reviewed date and evidence-gap note.
- Software vendor, renewal, or license context where useful.
What not to assume
- An assets register does not lock, wipe, or manage devices.
- A register is not a finance depreciation ledger.
- Summary report counts should not expose sensitive asset details.
How to use this term in a review
Use Assets register when you need a shared operating definition in a management report, access review, renewal review, domain review, or evidence-pack discussion. The goal is not to turn a glossary term into a control by itself. The goal is to make the scope, source, owner, status, date, and follow-up clear enough that a manager or client can understand what was reviewed and what still needs attention.
- Use the related pages to move from definition to workflow.
- Keep evidence wording precise and avoid audit, legal, or certification overclaims.
- Record limitations when the source is public, manual, customer-entered, or incomplete.