650+ apps for ~3500 users, ops wants IT to justify the chargeback — how have you tackled SaaS sprawl at this scale?

Posted by NextAdhesiveness9080@reddit | sysadmin | View on Reddit | 26 comments

Genuine ask, not selling anything.

Got roped into doing a deep dive on our SaaS landscape after operations leadership pushed back on the internal IT chargeback. We're logistics, \~3500 FTE. Head office bills each warehouse per pallet location, so bigger site = bigger IT bill. That bill has grown enough YoY that ops now wants a line-by-line justification of what they're actually paying for.

Went to IT for the breakdown. They don't really have one. Rough count of the app landscape is 650–700. Some sits properly in Entra with SSO, but a meaningful chunk is:

What I've already poked at:

Questions for the room:

  1. Anyone been through this exercise? What actually worked vs what wasted time?
  2. How do you reconcile "what finance pays for" with "what's actually being used and by whom"?
  3. SaaS management platforms — worth it at this size, or do you end up still doing half of it manually?
  4. Anything you wish you'd known before starting this kind of cleanup?

Will update the post with what we end up doing.