Video: Steve Zalewski, Deputy CISO, Levi’s Strauss & Co.
About the Author
As CEO and Co-Founder of Onapsis, Mariano drives the strategic direction of the company. Under his leadership, Onapsis has become one of the fastest-growing technology and cybersecurity companies in the world. With 20+ years of experience in the cybersecurity industry, both as an executive and as a cyber security expert, Mariano was the first to publicly present on cybersecurity risks affecting ERP platforms and how to mitigate them at major conferences such as RSA, Black Hat and SANS. Mariano’s contributions to the cybersecurity community include developing the first open-source SAP and ERP Penetration Testing frameworks, and uncovering critical zero-day vulnerabilities in SAP, Oracle, IBM, and Microsoft applications. Mariano’s insights are regularly featured in major media outlets such as CNN, Reuters, Wall Street Journal, Nasdaq, Fortune and The New York Times.
View Author Profile
The importance of security behind digital transformations has never been more relevant. Digital transformation is not only changing all of your business processes, but also moving all your security business systems to the cloud. These kinds of transitions can cause a lot of security risk, requiring a lot of trust on the end of the organization, but also the ability to verify that the processes and systems are still safe and secure. Over 64% of ERP deployments experienced some form of breach in the last 24 months—don’t let your organization become one of them. Listen to Steve Zalewski, Deputy CISO of Levi’s Strauss & Co., discuss digital transformation, security and risk and how Onapsis gave them much-needed visibility in the video below.

About the Author
As CEO and Co-Founder of Onapsis, Mariano drives the strategic direction of the company. Under his leadership, Onapsis has become one of the fastest-growing technology and cybersecurity companies in the world. With 20+ years of experience in the cybersecurity industry, both as an executive and as a cyber security expert, Mariano was the first to publicly present on cybersecurity risks affecting ERP platforms and how to mitigate them at major conferences such as RSA, Black Hat and SANS. Mariano’s contributions to the cybersecurity community include developing the first open-source SAP and ERP Penetration Testing frameworks, and uncovering critical zero-day vulnerabilities in SAP, Oracle, IBM, and Microsoft applications. Mariano’s insights are regularly featured in major media outlets such as CNN, Reuters, Wall Street Journal, Nasdaq, Fortune and The New York Times.
View Author Profile
Further Reading
SAP Security Notes: September 2026 Patch Day
Critical vulnerabilities in SAP Message Server and SAP Kernel patched in collaboration with the Onapsis Research Labs
Mitigating OVERPASS (CVE-2026-44756): A Critical Vulnerability in the SAP Kernel
Remediate OVERPASS (CVE-2026-44756), a critical pre-authentication SAP kernel vulnerability reachable over several SAP communication protocols. Read the step-by-step guide.
S4GET (CVE-2026-58240): A Critical Pre-Authentication Vulnerability in SAP NetWeaver’s Message Server
Analyze S4GET (CVE-2026-58240), a critical pre-authentication vulnerability in the SAP Message Server, including exposure checks and response steps.
