Mainframe Security SME

1 month ago
Contract
Lead
DevOps and Infrastructure
WaveStrong,

WaveStrong,

WaveStrong, founded in 2001, is a leading data privacy consulting company providing trusted cyber security solutions for over 18 years.

Internet Software & Services
51-250
Founded 2001

Description

  • Lead the end-to-end migration from ACF2 to RACF, including planning, design, testing, cutover, and stabilization.
  • Develop and maintain the migration roadmap, timelines, and risk mitigation strategies.
  • Analyze existing ACF2 rules, resource definitions, and access models and map them to RACF equivalents.
  • Build automated or semi-automated processes to streamline conversion and validation.
  • Design RACF class structures, grouping, profiles, and naming standards aligned with enterprise security policies.
  • Implement RACF administration best practices, including role-based access, dataset protection, digital certificates, and password/MFA integration.
  • Configure and optimize z/OS security components such as ICSF, PKI, SAF exits, and SMF logging.
  • Develop scripts, tools, and utilities to support RACF administration and reporting.
  • Ensure RACF implementation aligns with regulatory requirements such as SOX, PCI, and HIPAA.
  • Partner with audit teams to provide evidence, reporting, and remediation guidance.
  • Establish RACF operational procedures, access request workflows, and ongoing governance models.

Requirements

  • Experience leading mainframe security migrations from Broadcom ACF2 to RACF.
  • Strong knowledge of RACF administration and z/OS security architecture.
  • Experience with planning, testing, cutover, and stabilization for security platform migrations.
  • Ability to analyze ACF2 security rules, resource definitions, and access models.
  • Experience designing RACF class structures, profiles, grouping, and naming standards.
  • Knowledge of role-based access, dataset protection, digital certificates, and password/MFA integration.
  • Experience with z/OS security components including ICSF, PKI, SAF exits, and SMF logging.
  • Ability to develop scripts, tools, and utilities for automation and reporting.
  • Experience supporting compliance and audit requirements for SOX, PCI, HIPAA, or similar regulations.
  • Contract role: 12 months.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Detection and Response Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Detection and Response Engineer to build and operate defensive security controls that protect the infrastructure supporting its defense technology products.

AWS Azure CI/CD CloudFormation Docker GitHub Go Kubernetes Network Security Python Rust SQL Terraform
2 hours, 54 minutes ago

Traveling Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Traveling Security Technician to install, service, test, and inspect access control and IP camera systems while traveling from Pennsylvania to Maine.

4 hours, 4 minutes ago

Security Engineer, Detection & Response - Monitoring & Triage

Block 10K-50K Capital Markets

Block is hiring a Detection and Response Team (DART) security engineer to lead monitoring, triage, and incident response across its endpoints, cloud, identity, SaaS, and product environments.

AWS DNS Kubernetes Linux macOS Network Security SQL
6 hours, 19 minutes ago

Kernel Developer (fully remote, LATAM)

CloudLinux 51-250 IT Services

CloudLinux’s KernelCare team is hiring an experienced Kernel Developer to maintain and enhance Linux kernel live-patching services that deliver security fixes and features for customers worldwide.

Agile Bash C Cybersecurity Git Jenkins Linux Python Shell Scripting
10 hours, 54 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers