PortSwigger Announced Partnership with SAP to Enhance Web Application Security Across the Global Enterprise Landscape
SAP has partnered with PortSwigger, a leading application security software provider, to enhance web application security across its global enterprise solutions. The collaboration will integrate Burp Suite Enterprise Edition, PortSwigger's Dynamic Application Security Testing (DAST) platform, into SAP's Sovereign Cloud Services (SCS).
The partnership will secure various SAP applications, from multi-tenant Platform-as-a-Service to single-tenant Software-as-a-Service solutions, including ARIBA, Business Technology Platform, Fieldglass, HANA Cloud, and S/4HANA Private Cloud Edition. The implementation aims to satisfy regional security requirements across Australia, Canada, United States, and United Kingdom.
Through automated scans and CI pipeline integration, SAP will ensure comprehensive security coverage across its global application portfolio, enabling improved security posture monitoring across different regions while maintaining low false positives.
SAP ha stretto una partnership con PortSwigger, un fornitore leader di software per la sicurezza delle applicazioni, per migliorare la sicurezza delle applicazioni web nelle sue soluzioni aziendali globali. La collaborazione integrerà Burp Suite Enterprise Edition, la piattaforma di Dynamic Application Security Testing (DAST) di PortSwigger, nei servizi cloud sovrani (SCS) di SAP.
La partnership garantirà la sicurezza di varie applicazioni SAP, da soluzioni Platform-as-a-Service multi-tenant a Software-as-a-Service single-tenant, inclusi ARIBA, Business Technology Platform, Fieldglass, HANA Cloud e S/4HANA Private Cloud Edition. L'implementazione mira a soddisfare i requisiti di sicurezza regionali in Australia, Canada, Stati Uniti e Regno Unito.
Attraverso scansioni automatizzate e integrazione nella pipeline CI, SAP garantirà una copertura di sicurezza completa nel suo portafoglio di applicazioni globali, consentendo un monitoraggio migliorato della postura di sicurezza nelle diverse regioni, mantenendo bassi i falsi positivi.
SAP se ha asociado con PortSwigger, un proveedor líder de software de seguridad de aplicaciones, para mejorar la seguridad de las aplicaciones web en sus soluciones empresariales globales. La colaboración integrará Burp Suite Enterprise Edition, la plataforma de Dynamic Application Security Testing (DAST) de PortSwigger, en los Servicios de Nube Soberana (SCS) de SAP.
La asociación asegurará diversas aplicaciones de SAP, desde soluciones de Plataforma-como-Servicio multi-tenant hasta soluciones de Software-como-Servicio single-tenant, incluyendo ARIBA, Business Technology Platform, Fieldglass, HANA Cloud y S/4HANA Private Cloud Edition. La implementación tiene como objetivo satisfacer los requisitos de seguridad regionales en Australia, Canadá, Estados Unidos y Reino Unido.
A través de escaneos automatizados e integración en la pipeline CI, SAP garantizará una cobertura de seguridad completa en su portafolio de aplicaciones globales, permitiendo un monitoreo mejorado de la postura de seguridad en diferentes regiones mientras mantiene bajos los falsos positivos.
SAP는 애플리케이션 보안 소프트웨어의 선두 제공업체인 PortSwigger와 협력하여 글로벌 기업 솔루션의 웹 애플리케이션 보안을 강화합니다. 이 협업은 PortSwigger의 동적 애플리케이션 보안 테스트(DAST) 플랫폼인 Burp Suite Enterprise Edition을 SAP의 주권 클라우드 서비스(SCS)에 통합할 것입니다.
이번 파트너십은 ARIBA, Business Technology Platform, Fieldglass, HANA Cloud 및 S/4HANA Private Cloud Edition을 포함하여 다중 임대 플랫폼 서비스에서 단일 임대 소프트웨어 서비스 솔루션까지 다양한 SAP 애플리케이션의 보안을 보장합니다. 구현은 호주, 캐나다, 미국 및 영국의 지역 보안 요구 사항을 충족하는 것을 목표로 합니다.
자동화된 스캔 및 CI 파이프라인 통합을 통해 SAP는 글로벌 애플리케이션 포트폴리오 전반에 걸쳐 포괄적인 보안 범위를 보장하여 다양한 지역에서 보안 태세 모니터링을 개선하고 낮은 허위 긍정률을 유지합니다.
SAP a établi un partenariat avec PortSwigger, un fournisseur de logiciels de sécurité des applications de premier plan, pour renforcer la sécurité des applications web au sein de ses solutions d'entreprise mondiales. Cette collaboration intégrera Burp Suite Enterprise Edition, la plateforme de Dynamic Application Security Testing (DAST) de PortSwigger, dans les Services Cloud Souverains (SCS) de SAP.
Ce partenariat sécurisera diverses applications SAP, allant des solutions Platform-as-a-Service multi-tenant aux solutions Software-as-a-Service single-tenant, y compris ARIBA, Business Technology Platform, Fieldglass, HANA Cloud et S/4HANA Private Cloud Edition. L'implémentation vise à satisfaire les exigences de sécurité régionales en Australie, au Canada, aux États-Unis et au Royaume-Uni.
Grâce à des analyses automatisées et à l'intégration dans le pipeline CI, SAP garantira une couverture de sécurité complète de son portefeuille d'applications mondiales, permettant une meilleure surveillance de la posture de sécurité dans différentes régions tout en maintenant un faible taux de faux positifs.
SAP hat eine Partnerschaft mit PortSwigger, einem führenden Anbieter von Anwendungssicherheitssoftware, geschlossen, um die Sicherheit von Webanwendungen in seinen globalen Unternehmenslösungen zu verbessern. Die Zusammenarbeit wird die Burp Suite Enterprise Edition, die Plattform für Dynamic Application Security Testing (DAST) von PortSwigger, in die Sovereign Cloud Services (SCS) von SAP integrieren.
Die Partnerschaft wird verschiedene SAP-Anwendungen sichern, von Multi-Tenant-Plattform-as-a-Service bis hin zu Single-Tenant-Software-as-a-Service-Lösungen, einschließlich ARIBA, Business Technology Platform, Fieldglass, HANA Cloud und S/4HANA Private Cloud Edition. Die Implementierung zielt darauf ab, regionale Sicherheitsanforderungen in Australien, Kanada, den Vereinigten Staaten und dem Vereinigten Königreich zu erfüllen.
Durch automatisierte Scans und die Integration in die CI-Pipeline wird SAP eine umfassende Sicherheitsabdeckung für sein globales Anwendungsportfolio gewährleisten, wodurch eine verbesserte Sicherheitsüberwachung in verschiedenen Regionen ermöglicht wird, während die Anzahl der Fehlalarme niedrig bleibt.
- Enhanced security infrastructure across SAP's global cloud services
- Automated security testing integration in CI pipeline for improved efficiency
- Expanded regional security compliance coverage in key markets
- Reduced false positives in security testing
- None.
SAP Sovereign Cloud Services (SCS) will leverage Burp Suite Enterprise Edition, PortSwigger's best-in-class Dynamic Application Security Testing (DAST) platform, to secure SAP’s web applications from multi-tenant Platform-as-a-Service (PAAS) to single tenant Software-as-a-Service (SAAS) solutions, including:
- ARIBA
- Business Technology Platform (BTP)
- Fieldglass
- Gardener
- HANA Cloud (HCLD)
- Human Experience Management (HXM)
- Identity Authentication Services (IAS)
- Integrated Business Planning (IBP)
- PAYROLL
- S/4HANA Private Cloud Edition (PCE)
- SAP Analytics Cloud (SAC)
- Shared Management Services (SMS)
With deployments spanning diverse, restricted cloud environments and complex architectures, SAP SCS needed a DAST solution that could meet the increasingly challenging demands of a modern, global enterprise to satisfy regional security requirements across
Key highlights of this partnership:
- Securing the complexities of the web: This partnership reflects PortSwigger's mission to equip organizations with the means to secure the increasingly complex web landscape. Burp Suite Enterprise Edition provides SAP with a best-in-class DAST solution designed to handle the complexities of traditional and modern web applications.
- Security at scale: By running automated scans and integrating Burp Suite into their CI pipelines, SAP will ensure seamless, efficient, and accurate security coverage across their global application portfolio. This approach has allowed them to embed security into their development processes, meeting the demands of scale while having a more accurate understanding of each region’s security posture.
- A partnership rooted in technical excellence: By partnering with SAP, PortSwigger gains valuable insights into securing global portfolios of applications and APIs. This exchange of expertise will help shape future enhancements to Burp Suite Enterprise Edition, ensuring it continues to address evolving security challenges and deliver cutting-edge solutions for all customers.
"We are dedicated to providing our customers within regulated and federal industries with the most secure and reliable solutions," said Alijohn Ghassemlouei, Senior Director of Engineering, Sovereign Cloud at SAP. "By partnering with PortSwigger and adopting Burp Suite's DAST solution, we are able to satisfy regional security requirements across multiple countries at scale, through automation, and with the lowest false positives, ensuring that we are able to improve our SAP solutions as well as providing deeper technical insights to regional regulators."
Dafydd Stuttard, PortSwigger's founder and CEO, said, “This partnership represents an important collaboration in enhancing application security at scale. By integrating Burp Suite's powerful DAST scanning technology into SAP's processes, we are proud to support their commitment to delivering secure, high-quality web applications for their global customer base.”
About PortSwigger
PortSwigger is a leading provider of web application security solutions, renowned for its industry-leading Burp Suite software. The company is dedicated to empowering security professionals and organizations worldwide with both the tools and knowledge to combat evolving cyber threats. For more information, visit portswigger.net.
About SAP
As a global leader in enterprise applications and business AI, SAP (NYSE: SAP) stands at the nexus of business and technology. For over 50 years, organizations have trusted SAP to bring out their best by uniting business-critical operations spanning finance, procurement, HR, supply chain, and customer experience. For more information, visit sap.com.
View source version on businesswire.com: https://www.businesswire.com/news/home/20250225641159/en/
Source: PortSwigger
FAQ
What security solutions will SAP implement through the PortSwigger partnership?
Which SAP cloud services will be enhanced by PortSwigger's security solution?
How will SAP implement PortSwigger's security testing across its global operations?