Key takeaways: The operating system beneath SAP remains a critical attack surface requiring stringent security controls. Mandatory Access Control (MAC) through SELinux provides strict process confinement and limits the blast radius of compromises. Implementing a phased security deployment protects live SAP environments from unexpected downtime while enforcing policies.