Microsoft Licensing

Microsoft SAM & Licence Optimisation

A well-run Software Asset Management (SAM) programme is the foundation of every cost-effective Microsoft estate. This guide covers the end-to-end lifecycle — from discovery and inventory through entitlement reconciliation, right-sizing, and continuous governance — giving SAM professionals the framework to eliminate waste, reduce compliance risk, and strengthen every negotiation.

SAM & OptimisationMicrosoft LicensingFredrik FilipssonJuly 2025
📘 This guide is part of our Microsoft Licensing Knowledge Hub.
15–30%Typical Shelfware Rate
$2–5MAverage EA Savings
90Days to Build SAM Baseline
12Month Optimisation Cycle

📑 In This Guide

01

Why SAM Matters for Microsoft

Foundation+

Microsoft's licensing estate is arguably the most complex in enterprise IT — spanning Enterprise Agreements (EAs), CSP subscriptions, OEM bundles, Open Value, SPLA, and Azure consumption. Without structured Software Asset Management, organisations face three compounding risks:

1
Compliance Exposure

Microsoft conducts SAM engagements and formal audits that can result in multi-million-dollar true-up demands. Without accurate data, organisations have no credible defence and no negotiating position.

2
Overspend & Shelfware

Studies consistently show that 15–30% of Microsoft licences go unused or underused. E5 suites purchased for users who only need E3 features, SQL Server Enterprise on workloads that only require Standard, and Azure reservations that go unmatched all represent hidden waste.

3
Weak Negotiation Position

Every EA renewal and CSP renegotiation is a commercial event. Without a verified Effective Licence Position (ELP), your team is negotiating blind — accepting Microsoft's bill of materials (BOM) rather than presenting your own data-driven counter-proposal.

The SAM ROI: A well-run Microsoft SAM programme typically delivers 3–5× its annual operating cost in avoided spend, recovered licences, and improved negotiation outcomes. The investment pays for itself within the first optimisation cycle.
02

Building a Microsoft SAM Programme

Programme+

Stakeholders & Governance

Effective SAM requires cross-functional sponsorship. IT Asset Management (ITAM) owns the tooling and data, but Finance controls the budget, Procurement signs the contracts, Legal interprets the terms, and IT Operations deploys and decommissions. Without a governance board that includes all four functions, optimisation recommendations stall in committee. Learn more about independent Microsoft advisory services.

Maturity Stages

StageCharacteristicsTypical Outcome
1 — ReactiveNo inventory tools, spreadsheet-based tracking, audit triggers actionCompliance exposure, overspend unknown
2 — ManagedDiscovery tools deployed, entitlements documented, annual reconciliationCompliance risk reduced, basic cost visibility
3 — OptimisedContinuous reconciliation, right-sizing cadence, renewal playbook15–30% cost savings, audit-ready position
4 — StrategicSAM data drives every commercial decision, scenario modelling, vendor governanceMaximum leverage in every negotiation

Building the Baseline (90-Day Sprint)

The first deliverable of any new SAM programme is an Effective Licence Position (ELP) — a verified reconciliation of what you own vs what you've deployed. This typically takes 60–90 days and follows a structured workflow: deploy discovery tools → collect entitlement data → normalise and reconcile → identify gaps and surplus → produce an actionable ELP report.

03

Discovery & Inventory

Tooling+

What to Discover

A complete Microsoft SAM discovery must capture four layers of data:

H
Hardware & Infrastructure

Physical servers (core counts, processor types), virtual hosts and VM mappings, cloud subscriptions (Azure, AWS, GCP), and container environments. This is critical for server-based licensing (Windows Server, SQL Server) where physical host characteristics determine licence requirements.

S
Software Installations

Every Microsoft product installed — including versions, editions, and features enabled. Pay particular attention to SQL Server features (Always On, In-Memory OLTP, TDE) that may indicate Enterprise edition requirements, and Office/M365 installations on shared devices or VDI.

U
User & Device Assignments

Active Directory users, M365 licence assignments in Entra ID (formerly Azure AD), and device registrations. Cross-reference assigned licences against actual sign-in activity to identify dormant accounts. Learn more about Microsoft EA negotiation guide.

C
Cloud Consumption

Azure subscriptions, resource groups, and consumption data. Azure Hybrid Benefit usage, reserved instance utilisation, and Azure Arc-managed servers for hybrid licensing scenarios.

Discovery Tools

ToolScopeKey Strength
MAP ToolkitOn-premises servers & desktopsFree, agentless, Microsoft-endorsed for SAM
Microsoft 365 Admin CentreM365 licence assignments & usageNative reporting on inactive licences
Azure Cost ManagementAzure consumption & reservationsHybrid Benefit tracking, RI utilisation
SCCM / IntuneManaged endpointsDeep software inventory, metering data
Third-party SAM toolsFull estate (Snow, Flexera, ServiceNow SAM)Cross-vendor normalisation, ELP automation
Common Pitfall: No single tool captures the full picture. MAP Toolkit misses cloud, M365 Admin Centre misses on-premises, and SCCM misses unmanaged endpoints. A complete SAM programme combines at least two or three data sources and reconciles them manually or via a SAM platform.
04

Entitlement vs Deployment Reconciliation

ELP+

Entitlement Sources

Gathering what you own is often harder than discovering what you've deployed. Microsoft entitlements are spread across multiple channels:

EA
Enterprise Agreement (VLSC)

The Volume Licensing Service Centre (VLSC) holds your EA entitlements — but it's notoriously difficult to navigate. Export licence summaries and cross-reference against your renewal proposals. Watch for true-up additions that may not appear on your original order.

CSP
CSP / NCE Subscriptions

Cloud Solution Provider subscriptions are managed through your reseller's portal or the Microsoft Partner Centre. Ensure you have direct access to subscription details, not just invoices. Annual vs monthly commitment terms affect cancellation flexibility.

OEM
OEM & Pre-installed

Windows and Office licences that came with hardware. These are tied to the device, not transferable, and often overlooked in reconciliation — leading organisations to buy volume licences for machines that already have valid OEM entitlements. Learn more about Microsoft EA renewal preparation toolkit.

SA
Software Assurance

SA grants upgrade rights, licence mobility, and other benefits. Track SA expiry dates carefully — lapsed SA means you lose version upgrade rights and are frozen on the version installed at the time SA expired.

The Reconciliation Process

The ELP compares entitlements against deployments to produce a position for each Microsoft product family. The output is a simple matrix showing surplus (over-licensed — recovery opportunity) or shortfall (under-licensed — compliance risk) for every product and metric.

ProductEntitledDeployedPositionAction
M365 E55,0003,800+1,200 surplusDownsize at renewal
M365 E38,0008,400−400 shortfallTrue-up or re-assign
SQL Server Enterprise (cores)12896+32 surplusHarvest for re-deployment
Windows Server DC (cores)256288−32 shortfallLicence or consolidate VMs
Key Insight: The ELP is your single most valuable document at renewal time. It replaces Microsoft's BOM with your own verified data, shifts the conversation from "what Microsoft thinks you need" to "what you can prove you need", and typically surfaces $500K–$3M in avoidable spend.
05

Licence Optimisation Strategies

Savings+

M365 Suite Right-Sizing

The most common source of Microsoft overspend is E5 licences assigned to users who only need E3 features. E5 includes advanced security (Defender for Endpoint P2), compliance (eDiscovery Premium), and telephony (Teams Phone) — capabilities that many users never activate. Downgrading surplus E5 users to E3 and adding targeted add-ons only where needed can save $20–$40 per user per month.

Need Expert Microsoft Licensing Guidance?

Redress Compliance provides independent Microsoft licensing advisory — fixed-fee, no vendor affiliations. Our specialists help enterprises optimize Microsoft costs, negotiate better terms, and ensure compliance.

Explore Microsoft Advisory Services →

Inactive Licence Recovery

Run sign-in activity reports from M365 Admin Centre. Users who haven't signed in for 90+ days should be reviewed for licence removal or reassignment. Common causes include departed employees, service accounts incorrectly assigned user licences, and shared mailboxes that don't require full licences.

Server Licence Consolidation

For SQL Server and Windows Server, the optimisation lever is matching edition to workload. SQL Server Standard at ~$3,945 per 2-core pack vs Enterprise at ~$15,123 per 2-core pack means a single unnecessary Enterprise deployment on a 16-core host costs an extra $89K+. Review every Enterprise instance for features that actually require that edition.

Azure Hybrid Benefit & Reserved Instances

Organisations with SA-covered Windows Server and SQL Server licences can apply Azure Hybrid Benefit (AHB) for 30–50% savings on Azure VMs. Additionally, committing to 1-year or 3-year Reserved Instances (RIs) delivers another 30–60% vs pay-as-you-go. Combined, AHB + RI can cut Azure compute costs by 60–75%. Learn more about Microsoft audits and compliance playbook.

EA BOM Optimisation

Before every EA renewal, rebuild the Bill of Materials (BOM) from scratch using your ELP data. Common BOM optimisation tactics include: removing products no longer in use, converting per-device to per-user (or vice versa) based on usage ratios, leveraging step-up licences instead of full new purchases, and negotiating volume-based tier discounts using consolidated quantities.

Timing Matters: Begin optimisation work 12–18 months before your EA renewal anniversary. This gives time to complete discovery, build the ELP, run right-sizing, and develop a negotiation strategy with verified data. Starting 3 months out means accepting Microsoft's BOM with minimal pushback.
06

Audit Readiness & Compliance

Audit+

How Microsoft Audits Work

Microsoft uses two primary mechanisms: SAM engagements (positioned as "helpful" reviews, often conducted by third parties like Deloitte or a regional SAM partner) and formal contract audits (triggered by contractual audit rights in your EA or Open agreement). Both result in a deployment report that Microsoft compares to your entitlements.

SAM Engagement vs Formal Audit

AttributeSAM EngagementFormal Audit
TriggerMicrosoft-initiated "offer to help"Contractual audit clause
ScopeFull Microsoft estateSpecific products or agreement
Who ConductsThird-party SAM partnerIndependent auditor (e.g., Deloitte, EY)
OutcomeELP report → purchase recommendationCompliance finding → true-up demand
ObligationTechnically voluntary (but refusal may escalate)Contractually required
Risk LevelMedium — findings feed into renewal pricingHigh — financial settlement required

Audit Defence Best Practices

1
Maintain a Current ELP

If your ELP is less than 6 months old and verified by an independent party, you can present it as your compliance position — reducing the auditor's ability to impose their own methodology and numbers.

2
Challenge the Methodology

Auditors often overcount by including inactive installations, test environments, or incorrectly categorised editions. Line-by-line review of the auditor's findings frequently reduces claims by 40–60%.

3
Separate Audit from Renewal

Microsoft may link audit findings to a "discounted" renewal offer. This conflates compliance resolution with commercial negotiation — two separate conversations that should be handled independently to avoid overpaying on either. Learn more about Microsoft 365 license optimization.

4
Engage Independent Advisors

An independent licensing advisor (like Redress Compliance) brings audit experience, benchmarking data, and negotiation leverage that internal teams typically lack. Advisors routinely reduce audit claims by 50–80%.

07

Continuous Governance

Lifecycle+

SAM is not a one-time project — it's an ongoing discipline. Without continuous governance, the ELP degrades within 3–6 months as new hires, departures, server deployments, and cloud consumption shift the landscape.

Quarterly SAM Cadence

FrequencyActivityOwner
MonthlyM365 inactive licence review & recoveryITAM
MonthlyAzure cost review & AHB/RI utilisation checkCloud Ops / FinOps
QuarterlyServer licence reconciliation (SQL, Windows)ITAM + IT Ops
QuarterlySAM governance board reviewITAM, Finance, Procurement
AnnuallyFull ELP refresh & renewal preparationITAM + External Advisor
At EventM&A, divestiture, or major deployment changeITAM + Legal

Change Control & Approval Gates

Implement approval workflows for any action that creates a new Microsoft licensing obligation: new server deployments (especially SQL Server Enterprise), Azure subscription creation, M365 licence upgrades (E3→E5), and VDI or RDS deployments. Without gates, shadow IT and well-intentioned deployments create compliance gaps that only surface during audits.

📊 Free Microsoft 365 Licence Optimisation Calculator

Calculate potential savings with our free M365 optimization calculator. Identify redundant licences, right-size SKUs, and model cost reduction scenarios.

Use the Free Calculator →

Reporting & KPIs

Track key metrics that demonstrate SAM programme value: licence utilisation rate, cost per user (M365), shelfware percentage, Azure Hybrid Benefit coverage, and days-to-audit-readiness. Report these quarterly to the governance board and annually to the CFO to maintain executive sponsorship.

08

Recommendations

Best Practices+
1
Start with the ELP

Before any renewal, right-sizing initiative, or audit response — build a verified Effective Licence Position. This is the foundation of every downstream decision. Allow 60–90 days for the initial build. Learn more about Microsoft licensing usage review template.

2
Right-Size M365 Suites

Audit E5 assignments against actual feature usage. Downgrade to E3 + targeted add-ons where appropriate. This single action frequently saves $500K–$2M annually for organisations with 5,000+ users.

3
Match Server Edition to Workload

Review every SQL Server Enterprise and Windows Server Datacenter deployment. If the workload doesn't use edition-specific features, downgrade to Standard. The per-core cost difference is 3–4× and compounds across every host.

4
Maximise Azure Hybrid Benefit

Apply AHB to every eligible Azure VM. Combine with Reserved Instances for 60–75% savings vs pay-as-you-go. Track utilisation monthly to ensure coverage doesn't lapse.

5
Rebuild the BOM Before Every Renewal

Never accept Microsoft's renewal BOM at face value. Rebuild it from your ELP data, remove shelfware, convert metrics where beneficial, and use the verified position as your negotiation anchor.

6
Separate Audit from Commercial

If Microsoft combines an audit finding with a renewal offer, insist on resolving compliance separately from commercial terms. Conflating the two always favours Microsoft. Learn more about Microsoft EA true-up compliance guide.

7
Implement Change Control

Require approval gates for any deployment that creates a new Microsoft licensing obligation — SQL Enterprise, E5 upgrades, new Azure subscriptions, VDI/RDS. This prevents compliance drift between reconciliation cycles.

8
Engage Independent Expertise

Microsoft licensing complexity exceeds what most internal teams can manage alone. An independent advisor like Redress Compliance brings benchmarking data, audit defence experience, and negotiation leverage that delivers 5–10× ROI on advisory fees.

Related Microsoft Licensing Guides

Need Help with Microsoft SAM & Licence Optimisation?

Share your Microsoft estate details. We'll provide an independent ELP assessment, right-sizing analysis, and renewal strategy — typically within 48 hours.

FF

Fredrik Filipsson

Co-Founder, Redress Compliance

Former Oracle, SAP, and IBM — now helping enterprises worldwide negotiate better software deals. 20+ years in enterprise licensing, 500+ clients served.

Related Guides

Microsoft Licensing Usage Review Template Microsoft EA True-Up Guide Microsoft 365 License Optimization Microsoft Audits: CIO's Playbook Microsoft EA Renewal Preparation Toolkit Microsoft Licensing Knowledge Hub

Explore More Licensing Hubs

Oracle Licensing Hub Microsoft Licensing Hub SAP Licensing Hub IBM Licensing Hub Salesforce Licensing Hub ServiceNow Licensing Hub

Ready to Take Control of Your Software Licensing?

Book a free consultation with our licensing specialists. No obligations, no vendor ties — just independent advice tailored to your situation.

Book Your Free Consultation →