Understand Your Security Responsibilities and Achieve SAP Cyber Resilience

ON DEMAND

Complex SAP landscapes create complex business and security challenges. Moving to a RISE with SAP program has the potential to simplify many aspects of this complexity. However, do you know what your security responsibilities are under RISE with SAP?  

As part of RISE with SAP, customers benefit from high-caliber, secure cloud infrastructure and various security services managed by SAP. However, it’s important to remember that there are areas of security that are NOT covered by SAP that you will have to manage yourself. 

In this informative session, David D’Aprile – VP of Product Marketing at Onapsis, will help you to:

  • Understand the Shared Security Model and what is (and is not included) in RISE with SAP
  • Learn where you should consider investing time and resources for SAP security
  • Get started today – wherever you are in your RISE journey – in establishing broader SAP cyber resilience
Onapsis Podcasts

SAP Security Essentials for Utility Providers

It’s no secret that true visibility and understanding of risk to SAP landscapes can be challenging to navigate, especially for utility companies. The good news? There is a path forward whether you are just starting your SAP security journey or looking to optimize your security practices.

In this Podcast SAP & Onapsis explore Oklahoma Gas & Electric Company’s (OG&E) comprehensive approach to SAP security. They will share their maturity journey and integrated approach to gain true visibility and velocity when it comes to protecting their SAP landscape.

Onapsis Podcasts

The Real Impact of Vulnerabilities Affecting SAP

In this Podcast you will hear JP Perez-Etchegoyen, Co-Founder & CTO at Onapsis, take on the state of critical application security, thoughts on modern day SAP attacks and threat actor groups, and a new way of thinking about ERP security to protect what matters most to your organization.

In this session, we’ll cover:

  • The power and importance of business applications and why they are a target
  • A look back at an extremely active few years of threats including tactics, techniques, and procedures of threat actors continuing to evolve.
  • Key strategies to maintain compliance and better mitigate risk across your SAP landscape.

The Real Impact of Vulnerabilities Affecting SAP September 2023

Protect What Matters Most to Your Organization

ON DEMAND

In this Webinar, hosted by JP Perez-Etchegoyen, Co-Founder & CTO at Onapsis, you will hear his take on the state of critical application security, thoughts on modern day SAP attacks and threat actor groups, and a new way of thinking about ERP security to protect what matters most to your organization.

In this session, we’ll cover:

  • The power and importance of business applications and why they are a target
  • A look back at an extremely active few years of threats including tactics, techniques, and procedures of threat actors continuing to evolve.
  • Key strategies to maintain compliance and better mitigate risk across your SAP landscape.

Don’t miss this opportunity to learn best practices for protecting your SAP landscape.

SAP Security Essentials for Utility Providers

ON DEMAND

It’s no secret that true visibility and understanding of risk to SAP landscapes can be challenging to navigate, especially for utility companies. The good news? There is a path forward whether you are just starting your SAP security journey or looking to optimize your security practices.

Join SAP & Onapsis to explore Oklahoma Gas & Electric Company’s (OG&E) comprehensive approach to SAP security. They will share their maturity journey and integrated approach to gain true visibility and velocity when it comes to protecting their SAP landscape.

In this session, we’ll cover:

  • Factors that have made SAP security a necessity, not a nice to have, over the last decade.
  • Insights from a leader in the utilities space about how to leverage security as a tool, rather than viewing it as an obstacle.
  • Recommendations for immediate, short-term, and long-term actions to protect your most critical assets and data effectively.

Don’t miss this opportunity to learn best practices for protecting your SAP landscape.

Onapsis Podcasts

The Future of the Threat Landscape

The podcast explores the increasing cybersecurity threats to SAP systems, highlighting that attackers are quick to exploit vulnerabilities, often just days after patches are released. The discussion rounds out with insights on comprehensive vulnerability management, the specific threat of ransomware, and the influence of external factors like new legislation and evolving threats on cyber defense strategies

Threat Briefing: Unpacking the Impact of Vulnerabilities Affecting SAP P4

ON DEMAND

Over the past few months, SAP has released a number of Security Notes (patches) addressing a family of vulnerabilities discovered and reported by the Onapsis Research Labs. This family of vulnerabilities has CVSS scores ranging in criticality from 5.3 to 10. Most of these vulnerabilities are related to the SAP P4 protocol itself. And while chained vulnerabilities historically are not easily exploitable, they tend to be a favorite tactic for more sophisticated threat actors.

Pablo Artuso of Onapsis Research Labs is credited with discovering this large family of related, chainable vulnerabilities as “P4CHAINS.” In this presentation, Artuso will walk through a recap of his and Yvan Genuer’s Black Hat USA presentation, including:

  • What is P4CHAINS?
  • The potential impact of P4CHAINS
  • The vulnerability chain(s)
  • Elevated impact from chaining
Onapsis Podcasts

Protecting Your Company from SAP Cyber Threats

Reflecting on over three decades of experience in tackling enterprise security, Founders & CEO’s Mariano Nunez (Onapsis) and Richard Hunt (Turnkey) will share their lessons learned and provide practical tips and best practices for securing your organization. We will examine how the approach to SAP security has shifted and the most significant threats facing organizations today and where SAP security fits within the larger context of cybersecurity.

Onapsis Podcasts

Shift Left: Five Reasons Why You Should Extend DevSecOps to Your SAP Environment

What is DevSecOps? It is the integration of security best practices into the application development lifecycle. As digital transformation projects accelerate the creation of new code and applications, security often takes a backseat to business application output. With the average SAP system containing over 2 million lines of custom code, large global enterprises are increasingly concerned about the vulnerability of their critical applications. Join this webinar to understand why you should integrate your SAP application development into a comprehensive DevSecOps framework and learn best practices for getting started with SAP development.