General session image of Knowledge Forum D

Million-Euro Risk in ERP: Why Your SAP System Is the Least-Protected Vault in Your Company

Imagine a vault containing your company’s financial data, customer information, and the systems that keep your entire value chain running—yet with no one truly watching the door. For many organizations, this is the reality of SAP. ERP systems are the backbone of modern business and an increasingly attractive target for cyber attackers. When compromised, the consequences can go far beyond data theft: operational disruption, financial loss, fraud, and damage to the entire business can quickly reach millions. This talk explains why SAP attacks are uniquely difficult to detect and why traditional SOC approaches often fall short at the application layer. We will explore the semantic complexity of SAP telemetry, the gap between security operations and business applications, and how to separate the few genuinely dangerous signals from thousands of seemingly routine events. The takeaway: SAP security is not just an IT problem—it is a strategic business risk. We will also discuss practical first steps that organizations can take, regardless of their current security maturity.

Topic

Cloud SecurityGovernance, Riskmanagement and ComplianceIdentity and access managementNetwork Security / Patch ManagementSIEM / Threat Analytics / SOC

When & Where

calendar_month

Wed, 10/28/2026 02:45 PM - 03:00 PM

location_on

Forum D, Booth 7-742

Download session as iCaldownload_for_offline

Details

  • Format:

    Management lecture

  • Language:

    German

Session description

Speaker: Hr. Christoph Nagy 

Imagine a vault containing your company’s financial data, customer information, and the systems that control your entire value chain—yet with no one really watching the door. For many organizations, this is the reality when it comes to SAP.

ERP systems are the backbone of modern business. They run critical processes and handle highly sensitive data, while also becoming an increasingly attractive target for cyber attackers. A successful attack can go far beyond data theft: payments may be manipulated, business processes disrupted, and critical operations brought to a standstill. The financial impact can quickly reach millions.

But why is SAP so difficult to monitor effectively?

Traditional security monitoring focuses on networks, ...