Anita Cwynar

Anita Cwynar, CISSP, GDSA, GICSP, SABSA-certified application security specialist with over a decade of work experience in FMCG and high-tech industries, strengthening security posture across 1st and 2nd line of defense teams in Europe and Asia. Currently based in the Netherlands and focused on protecting core enterprise platforms at one of the biggest European companies.


Session

09-19
14:30
30min
Why you shouldn’t worry about your SAP systems… or should you?
Anita Cwynar

SAP powers some of the world's most critical business processes and that's exactly why attackers love it. Despite its importance, SAP security remains a blind spot for many security teams.
Drawing on a decade of hands-on experience defending SAP environments, this session explores why SAP systems are such attractive targets, how the threat landscape has evolved, and the security pitfalls that organizations repeatedly overlook. Through real-world lessons learned, we'll examine common misconfigurations, overlooked attack paths, and the unique challenges of securing enterprise-critical SAP systems.
Rather than focusing solely on what can go wrong, the session also provides practical guidance on improving SAP security hygiene, reducing attack surface, and preventing the issues that attackers most commonly exploit.
Whether you're a security practitioner, SOC analyst, penetration tester, or architect with little or no prior SAP experience, you'll leave with a clearer understanding of the risks hidden within SAP environments and actionable ideas to better protect one of the enterprise's most valuable assets.
This is a vendor-neutral, non-commercial session focused entirely on practical knowledge, real-world experience, and lessons learned from the field.

Tesla