Onapsis Finds ERP AI Security Readiness Lagging

Let's Data Science – AI Governance(US) 31 Jul 2026 38

ERP systems underpin finance, procurement, and identity workflows in many agencies - this survey signals a confidence gap worth noting as agencies consider AI integration into business-critical platforms.

  • Onapsis surveyed 204 US large-enterprise cybersecurity leaders; 86% had integrated or planned to integrate AI into ERP code.
  • Only 30% were fully confident they could detect an AI-based attack - a self-reported confidence gap, not a technical benchmark.
  • Sample is US-only, large-enterprise, SAP/Oracle/Salesforce users; findings should not be generalised broadly.
  • Monitor Agencies using SAP or similar ERP platforms may want to monitor emerging guidance on AI agent permissions, generated code review, and authorisation boundaries in business-critical systems.
  • Consider Risk and assurance teams could consider whether current AI security assessments explicitly address ERP-connected AI agents and AI-generated code pathways.

Implications are AI-generated. Starting points, not advice — see methodology for how they're framed.

View original source