ONLINE IT CONFERENCE

Focus on SAP Security
A structured approach to achieving transparency in your SAP environment

21 September 2026 | 10.00–10.45 am | Online

Secure your place at the SAP Security Expert Talk – free of charge, online, as part of the IT Online Conference 2026.

Sign up for free now

“87 per cent of global trade volume passes through SAP customers. Any outage or breach has an immediate impact on operational capability.”

SAP systems manage finance, production and payroll, yet they are rarely the focus of IT security architecture. Firewalls and endpoint protection stop short of the SAP application layer. What happens behind the scenes remains invisible to many companies: misconfigurations, over-privileged accounts and unsecured RFC connections, often going undetected for years.

In this Expert Talk, speaker Christian Schuller, Security Consultant at Claranet, will answer your questions about sustainable SAP security in SMEs: Why do traditional security tools fail at the SAP application layer? How can SAP log data be effectively integrated into a SIEM? And how can you get started with SAP-specific threat detection without launching a project that takes months?

What it’s all about

In this session, we’ll highlight a risk that many companies underestimate: why SAP systems are often overlooked in security strategies, why this is dangerous, and what potential solutions might look like. Our SAP security experts will share what they see time and again in real-world SAP environments and highlight what really matters.

This also touches on the regulatory reality: under NIS2 / Section 38 of the German Information Security Act (BSIG), senior management will be personally liable for IT risk management from December 2025. And with cloud architectures such as RISE with SAP, the attack surface is shifting without responsibility automatically following suit.

That’s what we’ll be discussing

We’ll guide you through the questions that really matter in practice:

  • Why traditional security tools fail: where firewalls, endpoint protection and standard SIEM reach their limits at the SAP application layer.
  • Three internal vulnerabilities arising from day-to-day operations: uncontrolled proliferation of permissions , misconfigurations on the message server, gateway and admin port, and the invisibility of an unused security audit log.
  • The SIEM gap: Why SAP log data may be received, but without SAP context and correlation rules, nobody understands it – and how this can be resolved.
  • Current threat landscape in 2026: Why , in the case of critical SAP CVEs, there are often only hours between a patch being released and an exploit appearing, and what this means for your patching speed.
  • RISE with SAP & hybrid architectures: What the shared responsibility model actually means and which responsibilities remain with you.
  • Possible solutions: first steps towards SAP-specific threat detection, without having to launch a major project straight away.
  • Regulatory requirements & liability: What NIS2 / Section 38 of the German Telecommunications Act (BSIG) will mean for the personal liability of senior management from December 2025 onwards.
  • Your questions (Q&A)

Key Benefits

  • Sie verstehen, warum SAP-Systeme in vielen Security-Strategien übersehen werden
  • Sie erkennen, warum dieser blinde Fleck konkret gefährlich ist
  • Sie kennen die typischen internen Schwachstellen in SAP-Landschaften
  • Sie verstehen, warum klassische Security-Tools bei SAP an ihre Grenzen stoßen
  • Sie bekommen ein Gefühl dafür, wie Lösungsansätze für SAP-Security aussehen können

Who this talk is aimed at

This Expert Talk is aimed at decision-makers in SAP client organisations who wish to ensure the long-term security of their SAP landscape by 2026:

IT Managers & IT Decision-Makers

SAP Basis & Security Managers

Compliance & Governance

CISOs and security managers

Speaker

Christian Schuller

Christian is a technical consultant at Claranet, specialising in SAP security and the security of modern IT environments. He supports companies in the planning, implementation and optimisation of security measures – both on-premises and in the cloud. He is particularly valued for his ability to address complex technical challenges in a clear and solution-oriented manner, as well as for developing practical security concepts that provide long-term protection.

Frequently Asked Questions

  • Yes. Participation in the Expert Talk as part of the IT Online Conference 2026 is free of charge.

  • For IT decision-makers, IT professionals and SAP security managers at SAP user organisations – from the very first steps right through to specific implementation issues.

  • Around 45 minutes, including a Q&A session.

  • Via the registration form on this page. Once you have registered, you will receive a confirmation email containing all your login details.

  • Participation will take place online as part of the IT online conference. You will receive the access link by email in good time beforehand.

  • Absolutely – that’s the whole point of this format. Share your specific situation with us, either live in the chat or via the Q&A feature.

  • Registered participants will be given access to the recording afterwards.

Kostenfreie Anmeldung

Loading...