CyberKriya
EP-24 - #CyberKriya Podcast - #SAPCyberSecurity - RISE & BTP Security Architecture and Hidden blind spots- With Khalid Hussain [https://www.linkedin.com/in/ACoAAA_4E6UBjWi9bu-_oaCn8kqiqJw9SDqKp8E] Summary: In this episode, Gaurav Singh hosts Khalid Hussain, a seasoned SAP cybersecurity expert, to discuss the evolving landscape of SAP security in cloud environments, particularly with SAP Rise, BTP, and AI integration. They explore how organizations can proactively secure their SAP landscapes amidst cloud transformation and rising cyber threats. Key Takeaways: * The shared responsibility model in SAP Rise and cloud security best practices * Critical security considerations for SAP S/4HANA migration and cloud transition * Building a SAP BTP Center of Excellence (COE) for governance, automation, and security * The role of network segmentation, firewalls as a service, and real-time monitoring * Emerging risks associated with non-human identities (NHIs) and AI security * Strategies for effective governance, compliance, and collaboration in SAP security Timestamps: 00:00 - Introduction: Khalid Hussain's background and expertise in SAP security 02:16 - Overview of Khalid's experience with Microsoft, AWS, and Accenture 03:42 - The misconception of security in SAP Rise and cloud platforms 05:13 - Importance of integrating security early in the SAP Rise journey 07:54 - The significance of shared responsibility and contractual protections 09:15 - Deciding between standard, premium, and tailored SAP Rise models 10:13 - Preparing for SAP Rise negotiations: identity, data residency, and network security 11:54 - Building secure SAP Rise architecture: network segmentation and infrastructure 13:18 - Managing SAP admin subnets, SAP Cloud Connectors, and admin tooling 15:02 - Firewalls as a service in SAP Rise: placement, management, and cost considerations 16:37 - Cross-cloud security challenges and standardization across environments 20:53 - Establishing a SAP BTP Center of Excellence (COE): team roles and governance 28:12 - The criticality of security contracts and proactive vendor engagement 29:15 - Responsibility ownership: program leads, SAP basis, security, and admin roles 31:54 - The impact of AI integration in SAP BTP and governance for AI security 37:17 - Building a multi-disciplinary SAP BTP COE: application, platform, security, and monitoring teams 40:04 - Dealing with multicloud approaches, standardization, and security controls 44:41 - SAP's platform management, SAP Basis roles, and the need for skilled personnel 48:02 - AI security, governance, and the emerging role of AI architects in SAP 52:22 - The future of non-human identities and automation in SAP security 56:45 - Data privacy, agent security, and managing AI data flows 58:23 - The importance of collaboration, community sharing, and continuous learning in security Disclaimer: The views and opinions expressed in this podcast are those of the host and guests and do not necessarily reflect the official policy or position of any organization, employer, or company they are affiliated with. This podcast is intended for informational and educational purposes only. It does not constitute professional, legal, or cybersecurity advice. References to specific companies, products, or technologies are made solely for discussion and illustration purposes — no endorsement or criticism is implied.Listeners are encouraged to consult their own security, legal, or compliance teams before acting on any information shared in this podcast.
24 episodios
Comentarios
0Sé la primera persona en comentar
¡Regístrate ahora y únete a la comunidad de CyberKriya!