Brian Tremblay, Onapsis Compliance Practice Leader, joins Security & Compliance Weekly to talk about how misconfigurations and vulnerabilities in your mission-critical applications can lead to compliance problems and the need for organizations to adopt a process of continuous compliance. As a former auditor, Brian understands the best practices leaders can use to identify, monitor and mitigate compliance risks. Watch the full podcast episode below with Security Weekly to learn more.
Interested in learning more about how Onapsis can protect your mission-critical applications? Join us at the 2020 Gartner Security & Risk Management Summit, September 14 – 17. Click here to register now!

About the Author
Brian Tremblay leads Onapsis’s Compliance Practice, drawing on over 20 years of experience in internal audit and risk management. As a former Chief Audit Executive, he brings hands-on expertise in preparing organizations for public offerings and implementing critical frameworks like SOX and GDPR. Brian’s deep knowledge of IT General Controls and regulatory compliance enables him to guide customers on mitigating risks related to their business-critical applications. His background at global companies like Raytheon and Deloitte establishes him as a trusted authority on audit-ready SAP systems and bridging the gap between security and compliance.
More about this author
Further Reading
Mandiant M-Trends 2026 Highlights SAP as a Top Target
For years, the cybersecurity industry has treated Enterprise Resource Planning (ERP) security as a niche operational issue. Security teams focused heavily on endpoint detection and network perimeters, often leaving the business-critical application layer in a dangerous blind spot. The newly released Mandiant M-Trends 2026 report shatters that paradigm. Based on data collected from more than…
GDPR in SAP: What It Is and How to Protect Sensitive PII
When organizations evaluate their cybersecurity posture, they often focus on perimeter defenses and cloud infrastructure. However, the most sensitive data a company holds, including employee records, customer details, and financial histories, usually resides deep within its SAP landscape. Because SAP acts as the central repository for this Personally Identifiable Information (PII), it is ground zero…
