Software license audits come in multiple flavors
- 21 September, 2009 06:03
- Comments
There are several types of software license audits, each with their own risks and variables, experts say.
Trade groups like the Business Software Alliance often ask companies to conduct "self-audits," where customers collect software installation and usage information and report back any instances of noncompliance.
Customers who receive a request for a self-audit should consider the benefits of this option, such as more flexibility over its timing, according to Scott & Scott, a Dallas law firm that specializes in software audits.
Self-audits are also preferable to ones by an independent third-party auditor, since the customer has no say in who is selected, or the audit's length or scope, according to a blog post by the law firm.
And it is "never advisable" to agree to an audit conducted by a software vendor itself before looking into every possible alternative, it adds. These types of audits are "the most intrusive and least impartial of all," it states.
Customers should also be mindful of "informal audits," which are typified by letters from sales representatives that ask for information about a customer's software installations, perhaps in the hopes of uncovering some noncompliance and making an easy sale to remedy the problems.
An official audit letter should specifically cite that the customer's contract requires cooperation, according to Eliot Arlo Colon, president of Miro Consulting, a Woodbridge, New Jersey, firm that offers advice on Oracle licensing. "If you don't have that, then it's an informal audit."
Such inquiries must be dealt with carefully, according to Colon.
"What you have is this implied threat," he said. "[The sales representative is saying], 'We're trying to save you from an audit. We're being your buddy here. If you tell me what's going on, I can save you from the audit people.'"
Even if a customer takes the bait and provides the information, the salesperson isn't an official auditor and can't certify a customer is actually in compliance with Oracle, he said.
At minimum, customers who receive an informal audit request should respond to any questions with more questions, Colon said.
"If they ask you, how many users are you running, it's OK to ask them, 'Why are you asking me?' You shouldn't be providing any information unless you know what it's going to be used for."
And get it in writing. "A lot of times, reps do this verbally. Say to them, 'I'd like you to respond in this e-mail chain.' Sometimes all that will happen is you won't hear from that person again."
- Bookmark this page
- Share this article
- Got more on this story? Email Computerworld
- Follow Computerworld on twitter
- Securing Vital Infrastructure
- Business Process Management, Service-Oriented Architecture, and Web 2.0: Business Transformation or Train Wreck?
- Beyond Dropbox: Requirements for Enterprise Secure File Sharing
- FIBRE CHANNEL SOLUTIONS GUIDE - state of the fibre channel industry
- Secure File Sharing in the Cloud: Maximizing the Benefits
- iPhone 5 rumour rollup for the week ending February 10
- 3D mapping revives underwater city
- Academic challenges Turnbull over NBN satellite criticism
- What are you saying: Telstra’s customer service slowly improving, SA minister urging Facebook to overturn its photo ban
- In pictures: Capgemini opens new Canberra office
-
Maingear's six-core laptop has 1.8TB of SSD storage
-
After Megaupload shuts, BTJunkie follows
-
Windows Event Viewer phishing scam remains active
-
NeuroSky MindWave: Fun with Brainwaves
-
20 popular Ubuntu Linux apps you may want to try
-
Windows 7 for Dummies® Dvd+book Bundle
-
Teach Yourself Visually Windows 7
-
Office 2007 All-In-One Desk Reference for Dummies
-
Computers for Seniors for Dummies, 2nd Edition
-
Windows 7 for Dummies®
-
Microsoft Office
-
Office 2007 for Dummies
-
Windows 7 for Seniors for Dummies®
-
MYOB Software for Dummies 6E Australian Edition












Comments
Post new comment