On March 9, 2026, the University of St. Gallen and Prof. Dr. Dennis Fehrenbacher hosted a seminar with Maxim Chuprunov from Riscomp. The guest’s presentation on cybersecurity risk and compliance in SAP environments combined an academic perspective with real-world insights, creating an interactive setting for discussion and learning.

Why it mattered
Enterprise Risk Management (ERM) is a core skill for future leaders. Recent developments have made cybersecurity and digital risks a direct board responsibility rather than just an IT issue. At the same time, GRC technology and ERM lag behind, creating a “translation gap” between CISOs and other executives.
This gap prevents CISOs from demonstrating the value of security and leaves the board without the business-impact visibility required to set priorities. The result can be increased IT and compliance risk and misaligned investments. The session aimed to address these pressing challenges and highlight the importance of bridging this gap.
What we did
In 2.5 hours, participants covered IT risk and compliance basics, the impact of new cybersecurity legislation, and SAP-specific considerations. The highlight was a hands-on case study: students assessed and presented digital risks based on information assets, visualized assets in an SAP landscape, estimated the quantitative impact of a cyber incident, and prioritized investments in mitigation measures.
This practical approach allowed students to connect theory with real-world application and better understand how organizations manage and communicate digital risks.
We thank Prof. Dr. Dennis Fehrenbacher for the invitation and the students of the University of St. Gallen for their strong engagement!
Join us at the ACA Symposium in Zurich
We look forward to continuing this discussion at the ACA Symposium in Zurich on May 20, 2026 and discover how organizations can better align cybersecurity, risk management, and business priorities.
For more information, please visit: https://www.aca-symposium.ch/programm-1