Listen to the Head of SAP at Sanofi, Frederic Maille, discuss his journey to secure SAP, including how he aligned internal teams, utilized Onapsis to determine the company’s level of risk and took actions to implement a cybersecurity program for this business-critical application. “We are an SAP shop because we have SAP everywhere,” says Maille, “…from the CRM [to the] ERP.” “Onapsis helped me to go fast… when we started to identify that we have to secure our SAP system, we really didn’t know how to start…the first idea was to start to set up a detection part.” Listen to how the Onapsis acquisition of Virtual Forge also enabled Sanofi, a customer of theirs, to improve their ERP cybersecurity and compliance strategy.
About the Author
Virginia Satrom Peterson is a strategic leader in the cybersecurity space, specializing in the intersection of business-critical application security and digital transformation. At Onapsis, she focuses on translating complex SAP threat intelligence into actionable insights for enterprise leaders. By bridging the gap between technical security operations and business stakeholders, Virginia helps organizations understand the urgency of protecting their core ERP landscapes from evolving cyber threats.
More about this author
Further Reading
How the 2026 Verizon DBIR Highlights the Vulnerability Patching Paradox in SAP
Each year, the security community pauses to digest the Verizon Data Breach Investigation Report. As the definitive, data-backed analysis of how real-world breaches occur, the report provides an invaluable reality check. For those of us tasked with protecting the core business applications that run the global economy (specifically SAP and Oracle ERP systems) the Mandiant…
Securing the SAP Core of Global Luxury: A 2026 Threat Briefing
Discover why SAP vulnerabilities pose a critical risk to luxury brand equity and how organizations can protect UHNW client data from advanced cyber threats.
Operationalizing DORA Compliance: Securing SAP Against the 5 Core Pillars
With the Digital Operational Resilience Act (DORA) in active enforcement, financial entities must transition from theoretical governance to technical execution. Integrating these stringent mandates into a comprehensive SAP GRC strategy is essential. Regulators require definitive proof that critical infrastructure, including enterprise SAP environments, can withstand and recover from severe cyber incidents. This technical guide dissects…
