Expert-built, enterprise-grade SAP BTP Security Logging & Auditing standard — Audit Log service configuration, critical-operation and object watch lists, ATT&CK-mapped detection, cross-layer correlation, export, and retention, mapped to your Security Monitoring Register. Editable Word template, from $395.
Expert-built, framework-mapped SAP BTP Account Structure & Landing Zone standard — ten requirement areas covering the account/directory/subaccount hierarchy, separation, entitlements, guardrails, and landing-zone provisioning. Editable Word template, from $395.
Expert-built, framework-mapped SAP BTP Secrets, Keys & Certificate standard — nine requirement areas covering secure storage, service keys, encryption key management, BYOK, certificate lifecycle, and rotation. Editable Word template, from $395.
Expert-built, framework-mapped SAP BTP Data Protection standard — nine requirement areas covering classification, encryption at rest and in transit, residency, retention, personal data, and minimization. Editable Word template, from $395.
Enforceable SAP BTP secure-development standard — CAP/RAP, XSUAA, Kyma, dependencies, CI/CD, and transport. Grounded in OWASP and NIST SSDF. Editable Word template.
Enforceable SAP BTP identity & access standard — IAS/IPS, XSUAA role collections, MFA, privileged access, provisioning, and access review. Mapped to NIST SP 800-63B. Editable Word.
This policy establishes the governance framework, requirements, and processes for maintaining a complete and accurate inventory of assets across the SAP Business Technology Platform — global accounts, subaccounts, environments, services, entitlements, and related identity and connectivity assets.
This policy establishes the governance framework, requirements, and processes for managing compliance, data residency, and provider assurance for the SAP Business Technology Platform — obligation mapping, data location, provider certifications and attestations, subprocessor governance, and audit evidence.
This policy establishes the governance framework, requirements, and processes for governing the SAP Business Technology Platform as a cloud service and for defining the shared responsibility for security between SAP and the organization — account model, entitlement governance, region strategy, guardrails, and provider dependency.
This policy establishes the governance framework, requirements, and processes for logging, monitoring, and detecting security-relevant activity across the SAP Business Technology Platform — audit logging, application and runtime logs, alerting, SIEM integration, retention, and detection and response.
This policy establishes the governance framework, requirements, and processes for protecting data and personal information on the SAP Business Technology Platform — classification, encryption, data residency, personal-data handling, retention, and minimization.
This policy establishes the governance framework, requirements, and processes for secure development and extension on the SAP Business Technology Platform — extension governance, the secure development lifecycle, CI/CD and transport, dependency governance, application security, and workload security.