Job Description:
Key Responsibilities
- Administer and maintain IBM RACF security environments across IBM z/OS platforms.
- Create, modify, disable, and remove RACF user IDs and group IDs in accordance with approved access procedures.
- Manage RACF groups, permissions, ownership, authorities, and resource profiles.
- Administer RACF dataset profiles and resource profiles for applications, started tasks, transactions, and system resources.
- Manage and review RACF privileged authorities including SPECIAL, OPERATIONS, AUDITOR, and other elevated permissions.
- Perform regular RACF access reviews, entitlement reviews, and privileged-access reviews.
- Identify and remediate excessive, inappropriate, inactive, orphaned, or unauthorized access.
- Use IBM zSecure for RACF administration, security analysis, reporting, auditing, and compliance monitoring.
- Perform security assessments using zSecure Audit and generate reports for security and compliance requirements.
- Analyze RACF and z/OS security violations and investigate unauthorized access attempts.
- Support internal and external security audits by preparing RACF, zSecure, and z/OS security evidence and reports.
- Track audit findings, coordinate remediation activities, and provide evidence for audit closure.
- Support implementation and administration of Multi-Factor Authentication (MFA) for mainframe environments.
- Troubleshoot authentication and authorization issues involving RACF, MFA, and mainframe applications.
- Manage the lifecycle of mainframe digital certificates, including certificate inventory, renewal, replacement, installation, validation, and retirement.
- Coordinate certificate replacements and renewals with application, infrastructure, PKI, network, and security teams.
- Manage RACF key rings and certificate-related security configurations where applicable.
- Monitor certificate expiration dates and proactively coordinate renewals to prevent production outages.
- Support security hardening and continuous improvement of IBM z/OS environments.
- Investigate RACF authorization failures, authentication problems, security violations, and mainframe security incidents.
- Perform periodic user and entitlement certification activities.
- Support Segregation of Duties (SoD) and privileged-access controls.
- Implement RACF and mainframe security changes through formal Change Management processes.
- Develop and maintain RACF, zSecure, MFA, certificate-management, and security-operation procedures.
- Collaborate with Mainframe Operations, System Programmers, Application Teams, Cybersecurity, IAM, PKI, Risk, Compliance, and Audit teams.
- Provide security recommendations and technical support for mainframe applications and infrastructure.
- Maintain accurate security documentation, audit evidence, operational procedures, and technical runbooks.
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.