I want to conduct a technical security assessment on my company's client computers with focus on Windows 10.
So far, my idea is to execute several Powershell scripts on the clients and gather the results into one central point. For example, the Powershell scripts should analyze the current version of antivirus signatures, list the installed software or the local users.
In the end, I want to answer questions like "which clients have old versions of antivirus databases?", "which clients have unauthorised software installed?", "which clients have unauthorised local users?" etc. Also, I want to see trends, so I want to store the log files time-dependent.
What is the best way to analyze such log files? Do I need something like a Log Management tool or is it too much of a good thing? Or is there even existing software for that purpose? How would you try to solve the problem?