Connect Microsoft 365 / Entra ID (formerly Azure AD) read-only and within minutes you have the basis of your inventory: the tenant's devices, users and licences.

NisPo scans the company laptops to build the IT asset inventory in an hour

The asset inventory is one of the basic controls in any security framework, NIS2 included: the ACN measures require up-to-date inventories of devices, services and software. Yet it’s also the one most SMEs haven’t kept up to date: spreadsheets filled in once and never touched again.

Why it matters

You can’t protect what you don’t know you have. An up-to-date inventory is the prerequisite for managing vulnerabilities, applying patches and proving compliance at audit time.

The manual method (and why it fails)

Traditionally the data is collected by hand: you ask each department, export lists from different systems and paste them into a sheet. The result: weeks of work, and data that is already out of date the next day.

The Nispo method

  1. Connect Microsoft 365 / Entra ID (formerly Azure AD) with read-only permissions.
  2. Nispo automatically imports the tenant’s devices, users and licences.
  3. Add by hand what Microsoft 365 cannot see (servers, network devices, unmanaged software) and assign an owner to each item.
  4. You get the inventory, updated at every sync for the part that comes from the tenant, ready to export for inspections.

In less than an hour you have a real baseline of your IT environment, not an estimate.

The next step

The inventory is the basis for the asset identification requirements and for the rest of the control register: that’s where the first gaps show up and remediation starts.

Nispo automatically checks technical controls on Microsoft 365, Google Workspace, AWS and Google Cloud and organises everything else: ACN requirements, evidence, suppliers and remediation.