Website Governance Starts With a Site Inventory

About the Author

Abdulrahman Ghodayah

SRE and Security Manager

Abdalrahman is a client-centric SRE and Security Manager at Vardot, where he leads a team of DevOps Engineers and supports the delivery of secure, reliable, and scalable digital platforms. He brings strong experience in automating, optimizing, and securing deployment workflows, helping teams improve operational efficiency, system resilience, and service uptime. He holds a Master’s in Computer Science and is pursuing an MBA, combining deep technical expertise with a growing strategic and business perspective to align engineering practices with client needs, business goals, and long-term platform sustainability.

FAQs

A website inventory records the properties an organization runs: domains, owners, platforms, and obligations. A content audit assesses the pages inside a property for accuracy, performance, and accessibility. The inventory tells you which sites exist and who is accountable. The audit tells you what is wrong inside them. The inventory comes first, because a content audit can only cover the sites you already know about.

 

One named person in central IT or central web services should own the inventory, with departmental contacts named per site rather than per department. Ownership fails when it sits with a committee or a role that turns over, because inventory maintenance is a recurring task rather than a project. The owner does not have to run the sites. They have to be accountable for the record being current.

 

Discovery across DNS, certificate transparency logs, analytics, and billing typically takes days rather than weeks. Reconciling the findings takes longer, because assigning a named owner to every site means contacting departments and resolving the properties nobody claims. Plan for the unclaimed sites to consume most of the effort. They are also the ones carrying the compliance and security exposure.

 

Yes, though the work is smaller. A multisite gives you an authoritative list of the sites on that codebase, which is most of the inventory for those properties. It says nothing about the sites outside it: the departmental WordPress install, the standalone conference site, the platform an acquired institution brought with it. Multisite narrows the discovery problem. It does not close it.

 

Join the conversation +