The global and independent platform for the SAP community.

Security with dashboards

If you are a global DAX company and want to keep track of 50 productive SAP systems with 30,000 users worldwide, the only way to do so is to implement a new complete protection with a dashboard.
E-3 Magazine
September 3, 2021
avatar
This text has been automatically translated from German to English.

The globally active DAX company Linde, with over 50 productive SAP systems and 30,000 users worldwide, needs to keep track of the visibility of critical events in real time. This is where a new complete security solution, as implemented by Linde with the security experts from Sast Solutions, can help. The insight: Sophisticated dashboards are an indispensable part of this. 

Hardening of all landscapes

The Sast Solutions team used a three-step approach: First, an analysis of current vulnerabilities was performed. In the second step, the gaps were closed. Thanks to agile process management with five teams working in parallel, all landscapes were hardened in just 16 months - from configuration to cleaning up all RFC interfaces, from gateway hardening to the elimination of critical basic authorizations.

Finally, the third step was to ensure that no new security vulnerabilities were created. The final step was therefore to set up the Sast Suite for real-time monitoring, including the standard connection of a sophisticated security dashboard.

The Security Dashboard visualizes information about the variety of different systems and responsibilities as well as deviations in a target group-oriented manner and enables a uniform top-down view of the achieved security and compliance standard - in real time.

In addition, the solution can not only show where there is a problem, but also provide a recommendation for action at the same time. Ralf Kempf, CTO of Sast Solutions, comments: "In practice, a customer needs to monitor the result of 2000 individual check actions from 300 SAP systems on a daily basis, for example, identifying vulnerabilities through critical configurations and conspicuous usage. This can only be done easily and in real time with a dashboard that offers the possibility to navigate through various levels down to the details of the alarm message."

For example, the security dashboard must allow data to be combined depending on the situation, regardless of the area, and visualize reporting for both the IT security area and system managers.

Ralf Kempf explains: "A system manager in particular needs a simple overview at the first level with just two traffic lights: one for the configuration and authorizations area, the second for SIEM/real-time monitoring. He then simply orients himself to this information, knows immediately in which area he needs to take action - and receives details of the incidents and corresponding recommendations for action in real time at the click of a button."

According to specialist Kempf, practice shows that even large customers with only a few employees can monitor all SAP systems worldwide in real time if they use complete solutions such as Sast Suite in combination with a dashboard.

For Linde, the transparent overview and extensive analysis options have immediately proven their worth, as Andreas Feistl, Team Lead - GRC Operations at Linde, notes: "We have been able to significantly reduce the probability of critical events occurring. And we are now able to react to events much faster."

https://e3mag.com/partners/sast-solutions-ag/
avatar
E-3 Magazine

Information and educational outreach by and for the SAP community.


Write a comment

Working on the SAP basis is crucial for successful S/4 conversion. 

This gives the Competence Center strategic importance for existing SAP customers. Regardless of the S/4 Hana operating model, topics such as Automation, Monitoring, Security, Application Lifecycle Management and Data Management the basis for S/4 operations.

For the second time, E3 magazine is organizing a summit for the SAP community in Salzburg to provide comprehensive information on all aspects of S/4 Hana groundwork.

Venue

More information will follow shortly.

Event date

Wednesday, May 21, and
Thursday, May 22, 2025

Early Bird Ticket

Available until Friday, January 24, 2025
EUR 390 excl. VAT

Regular ticket

EUR 590 excl. VAT

Venue

Hotel Hilton Heidelberg
Kurfürstenanlage 1
D-69115 Heidelberg

Event date

Wednesday, March 5, and
Thursday, March 6, 2025

Tickets

Regular ticket
EUR 590 excl. VAT
Early Bird Ticket

Available until December 24, 2024

EUR 390 excl. VAT
The event is organized by the E3 magazine of the publishing house B4Bmedia.net AG. The presentations will be accompanied by an exhibition of selected SAP partners. The ticket price includes attendance at all presentations of the Steampunk and BTP Summit 2025, a visit to the exhibition area, participation in the evening event and catering during the official program. The lecture program and the list of exhibitors and sponsors (SAP partners) will be published on this website in due course.