Onapsis Podcasts

2024 Year in Review with Onapsis Research Labs

With 2024 behind us, the best way to prepare for a successful 2025 is to evaluate the past. JP Perez-Etchegoyen and Paul Laudanski from Onapsis Research Labs (ORL) will recap trends from 2024 and provide best practices to prepare you for threats targeting business critical applications in 2025.

In this session you’ll gain a greater understanding of:

  • Macro trends and observations gleaned from the extensive security research conducted by Onapsis Research Labs
  • A comprehensive recap of critical patches and noteworthy news from 2024, ensuring you can prioritize to support your team’s efforts
  • Actionable insights to empower your team in securing your SAP landscape in 2025 and beyond.
Case tsudy 500 Utility Company - RISE

How a Fortune 500 Utility Achieved an On-Time, On-Budget RISE with SAP Go-Live

Industry: Utilities, Gas & Electric
Company Size: 2K+ employees, >$2B revenue

Customer Profile

For one Fortune 500 company, navigating the unique challenges of SAP security for the utilities industry was a top priority as they faced the complex task of modernizing their twenty-year-old, on-premises SAP system. By partnering with Onapsis for both technology and expert guidance, the company successfully executed a greenfield RISE with SAP transformation, building security in from the start to achieve a secure, on-time, and on-budget go-live.

The Challenge: Modernizing a Complex Legacy System in the Cloud

The company’s greenfield migration to a new RISE with SAP environment meant starting fresh, but it also introduced new challenges. They recognized that under the cloud’s shared responsibility model, their teams needed to navigate new security and compliance requirements. Their primary challenges were:

  • Modernizing a complex, 20-year-old SAP system without introducing new risks.
  • Gaining a clear understanding of their team’s specific responsibilities under the shared responsibility model for application security in the RISE with SAP environment.
  • Augmenting their skilled-but-overburdened staff with deep, hands-on expertise in securing a multi-year RISE deployment.
  • Finding a single, trusted partner who could provide both industry-leading technology and expert strategic guidance.

The Solution: A Partnership of Technology and Expertise

Already a long-time Onapsis customer, the utility company expanded its partnership to leverage the unique combination of Onapsis technology and expert services for their cloud journey. The solution included two key components:

The Onapsis Platform

The company extended the Onapsis Platform to their new RISE environment, gaining centralized visibility and control over both their legacy systems and new cloud assets. This provided continuous monitoring and vulnerability scanning for critical components like SAP BTP and SAProuter, all managed from a single dashboard.

Onapsis RISE Experts

The utility enlisted Onapsis’s team of hands-on RISE experts to augment their internal staff. This provided them with SAP-security-focused expertise to guide them from the initial planning stages through go-live, helping to troubleshoot issues, recommend best practices, and prevent project delays.

The Results: A Secure, On-Time, and On-Budget Transformation

By building security into their project from the beginning, the utility company de-risked their migration and achieved significant time and cost savings.

Results at a Glance

  • 75% Reduction in mean-time-to-remediate (MTTR).
  • 50% Reduction in security investigation times.
  • On-time and on-budget project delivery with practically no delays due to security or compliance issues.
  • Centralized visibility across both legacy on-premise and new RISE with SAP systems.
  • Significant time and cost savings achieved through automation and the elimination of manual processes.

“In the five years we’ve worked with Onapsis to secure our on-premises systems, we’ve not only experienced the day-to-day value of their technology – cutting our investigation times in half and reducing our mean-time-to- remediate by over 75% – but we’ve come to rely on them as true expert partners in shaping and optimizing our SAP security strategy. We knew we had to have them involved from the start when we began our RISE discussions and their guidance was invaluable, helping us to not only navigate but anticipate potential security and compliance obstacles so we could get ahead of them and avoid unexpected project delays.

The automation and risk-based analysis provided by their solutions made it easy to build security checks into each stage of the product, so we could find and fix things quickly, our teams were aligned, and we were ultimately able to deliver our RISE project on time and on budget.”

– VP of Security, Utility Company

Conclusion

By embedding security into their RISE with SAP project from day one, this Fortune 500 utility created a blueprint for successful cloud transformation. The combination of the Onapsis Platform’s automated analysis and the hands-on guidance from Onapsis experts not only improved their security posture but also acted as a project accelerator. The result was a seamless, on-time, and on-budget go-live that eliminated security as a roadblock and established a strong foundation for future innovation in the cloud.

Onapsis Webinar

SAP Security is Everyone's Responsibility: Focus on Utilities with Eversource

Learn best practices for security and resilience of SAP systems in the utilities sector

ON DEMAND

In this webinar you will hear directly from Eversource, a leader in the utility sector, and Onapsis, about how they collaborate to enhance the security and resilience of Eversource’s SAP systems amid evolving cybersecurity threats. This conversation highlights that security is everyone’s responsibility within an organization and provides unique insights into real-world applications of advanced cybersecurity measures tailored for the utilities industry. Don’t miss this opportunity to learn about proactive defense strategies that safeguard critical infrastructure—essential for every utility professional concerned with cybersecurity.

During this webinar, you will:

  • Learn about best practices for building a resilient security culture, emphasizing training, awareness, and continuous improvement.
  • Gain insights into Eversource’s specific strategies for securing SAP systems, including threat detection, vulnerability management, and incident response.
  • Explore the unique requirements and regulatory considerations that shape cybersecurity practices within the utilities industry.
  • Learn how Eversource and Onapsis partner to strengthen the security posture of SAP systems, integrating expertise from the utility sector with cutting-edge cybersecurity solutions.
  • Discover how Eversource fosters a culture of shared security responsibility, engaging employees across all levels to contribute to cyber defense.

Cybersecurity for SAP

The Book on Cybersecurity for SAP

Get the definitive guide to SAP cybersecurity, co-authored by experts from Onapsis and Under Armour. Learn key security principles, frameworks, and tools to protect your SAP systems. Download the first chapter and claim your free copy today.

Onapsis Webinar

2024 Year in Review with Onapsis Research Labs

Look back on 2024 and get a sneak-peek into what’s on the horizon for 2025!

ON DEMAND

With 2024 behind us, the best way to prepare for a successful 2025 is to evaluate the past. JP Perez-Etchegoyen and Paul Laudanski from Onapsis Research Labs (ORL) will recap trends from 2024 and provide best practices to prepare you for threats targeting business critical applications in 2025.

In this session you’ll gain a greater understanding of:

  • Macro trends and observations gleaned from the extensive security research conducted by Onapsis Research Labs
  • A comprehensive recap of critical patches and noteworthy news from 2024, ensuring you can prioritize to support your team’s efforts
  • Actionable insights to empower your team in securing your SAP landscape in 2025 and beyond.
Onapsis Webinar

2024 Year in Review with Onapsis Research Labs

With 2024 behind us, the best way to prepare for a successful 2025 is to evaluate the past. JP Perez-Etchegoyen and Paul Laudanski from Onapsis Research Labs (ORL) recap trends from 2024 and provide best practices to prepare you for threats targeting business critical applications in 2025.

Onapsis Podcasts

The Defenders Digest Episode 15

Everything you need to know in the world of ERP security with The Defenders Digest. Hear directly from Paul Laudanski & JP Perez-Etchegoyen of Onapsis Research Labs as they chat through monthly highlights and need-to-know information around SAP and Oracle security.

Onapsis Podcasts

Maximizing Security in RISE with SAP

SAP offers a highly secure and compliant cloud infrastructure for RISE with SAP customers. With the peace of mind that SAP is managing the security of the foundational layers, customers can concentrate on their own security and compliance responsibilities: protecting business processes, sensitive data, and any extensions or customizations.