Events

The Evolution of SAP HANA Security: How to Protect the Version you are Running

May 24, 2018 | 11:00 AM12:00 PM CDT
Online
Included with membership
SAP HANA is a con­stant­ly evolv­ing and impor­tant tech­nol­o­gy for any SAP cus­tomers. If you have not already includ­ed HANA In your land­scape you are most like­ly plan­ning to do so in the near future. It has sev­er­al offer­ings includ­ing S/4 HANA, HANA Cloud Plat­form and now sev­er­al oth­er SAP prod­ucts heav­i­ly rely on its pow­er to process big data at a fast pace. 

To date, HANA has already been adopt­ed by more than 7,200 cus­tomers world­wide includ­ing gov­ern­ments, aero­space and defense, auto­mo­tive and health­care com­pa­nies to name a few. Con­ceived and designed to be the under­ly­ing data­base for every future SAP Sys­tem, it stores all busi­ness-crit­i­cal infor­ma­tion that keeps a com­pa­ny running. 

Over the past few years, SAP has includ­ed new fea­tures in SAP HANA to ful­fill their customer’s busi­ness needs. How­ev­er, as a result, these fea­tures have increased the platform’s attack surface.

Dur­ing this pre­sen­ta­tion, atten­dees will get an agnos­tic view of the evo­lu­tion of SAP HANA secu­ri­ty from its begin­nings to its lat­est ver­sion, 2.0, which was released in late 2016. Atten­dees will under­stand how the plat­form evolved through archi­tec­tur­al changes, and vul­ner­a­bil­i­ty patch man­age­ment and how to secure the sys­tems they are cur­rent­ly run­ning in their land­scapes.  This pre­sen­ta­tion will cov­er the process of vul­ner­a­bil­i­ty dis­cov­ery and eval­u­a­tion of fix­es includ­ing some of the crit­i­cal bugs uncov­ered by our research team. 

Final­ly, we will share our rec­om­men­da­tions for how orga­ni­za­tions can pro­tect their SAP HANA plat­form from attack­ers and will pro­vide guide­lines for effec­tive­ly audit­ing and assess­ing SAP HANA systems. 

Speak­er:

Juan Pablo Perez-Etchegoyn, CTO, Onap­sis