Patch Management and Reporting with SimpleHelp

The machines I am under contract to take care of are windows domain machines. I use GPOS and WSUS, Powershell to handle windows patches.

For application patches I have started using SimpleHelp with RuckZuck https://ruckzuck.tools/
I have a simplehelp alert that runs a custom script. It checks if ruckzuck is installed or not. If not runs remediation to install it. Then ( not yet implemented. POC currently. ) runs an alert with custom script to check for updates. If updates/patches, run remediation to auto patch silently.

My customers under contract use BitDefender AV already. The basic gravityzone package they have already does risk assessment and shows what applications are out of date. It is a separate add-on cost if you want Bitdefender to patch third-party software. Pricing is not bad and I may move to that later. But for now what I have works. Example pricing: It varies depending on quantity and how many licenses you purchase, what vendor you use etc.https://www.insight.com/en_US/shop/product/2897ZZBEN120GLZZ/BITDEFENDER/2897ZZBEN120GLZZ/BitDefender-GravityZone-Patch-Management---subscription-license--1-year----1-license/

The toolboxes you listed above are also good options.

If you want more reporting capabilities, check out scancircle.https://www.scancircle.com/en
SimpleHelp integration here:
Integrate Scancircle with Simple Help. SC gives full stats