About the Author
Alex Horan is the Vice President of Product Management for Onapsis, where he focuses on developing solutions for SAP security and ERP vulnerability management. With over 18 years of experience, Alex has a proven track record of helping large companies enhance their security posture. His expertise spans key areas such as vulnerability assessment, penetration testing, and systems auditing, making him a trusted voice on topics like SAP compliance and secure system configuration. He is committed to ensuring that Onapsis’s products provide advanced protection against real-world threats like ransomware and unauthorized access.
View Author Profile
Onapsis Director of Product Management, Alex Horan, had the pleasure of speaking with Security Guy TV host, Chuck Harold, at Black Hat Las Vegas 2019 earlier this month. Alex and Chuck were able to discuss the unique offerings Onapsis can provide your organization, such as continuous monitoring and change assurance. “[People] have a lot to do,” Alex commented, “they have a lot of things running in their environments and understanding them all and knowing exactly what to do for all of them is a hard task.” This is a problem people have “lived with” for so long that they have become immune to it because these systems have been enabled for a long time. People assume they have not had a security issue, which is different from a technical issue, and therefore will never have one. Watch the interview below for the full story!
About the Author
Alex Horan is the Vice President of Product Management for Onapsis, where he focuses on developing solutions for SAP security and ERP vulnerability management. With over 18 years of experience, Alex has a proven track record of helping large companies enhance their security posture. His expertise spans key areas such as vulnerability assessment, penetration testing, and systems auditing, making him a trusted voice on topics like SAP compliance and secure system configuration. He is committed to ensuring that Onapsis’s products provide advanced protection against real-world threats like ransomware and unauthorized access.
View Author Profile
Further Reading
The SAP Shared Responsibility Model: Who is Responsible for Custom Application Code Security in SAP BTP?
As companies modernize their ERP landscapes through RISE with SAP and move to the cloud, a dangerous assumption takes root: that SAP will automatically handle all security for them. Development teams migrate custom code and extensions to SAP Business Technology Platform (BTP), leverage low-code tools and AI copilots, and assume the platform’s built-in defenses will…
Unmanaged “Vibe Coding” Creates Risks for SAP Clean Core Strategies
It feels as though vibe coding has sparked a wild-west adoption phase for generative AI in enterprise development. The temptation is obvious: massive productivity leaps achieved just by feeding natural language prompts into LLMs to deploy software at record speeds. Organizations are sprinting to integrate these practices, terrified that lagging behind means losing their competitive…
Onapsis and CrowdStrike Expand Partnership to Secure SAP in the Agentic AI Era
By bridging Onapsis’ deep SAP application-layer domain knowledge and threat research with the power of the CrowdStrike Falcon platform, we are eliminating historical blind spots between enterprise SAP systems and central SOC operations.

