RACF Specialist - Mainframe Security Risk Manager

  • Columbus, OH
  • Posted 2 days ago | Updated 11 hours ago

Overview

On Site
USD 50.00 - 60.00 per hour
Full Time

Skills

ACF2
Data Security
HIPAA
Cyber Security
ROOT
Security Controls
Documentation
Incident Management
Risk Analysis
Training
Security Policy
Auditing
Risk Assessment
Finance
Health Care
FOCUS
Regulatory Compliance
Risk Management
Access Control
Management
Mainframe
Log Analysis
Reporting
IBM
RACF
z/OS
CISSP
Information Systems
CISM
Information Security
IT Governance
ISO/IEC 27001:2005
COBIT
Collaboration
Spectrum
Life Insurance
Salesforce.com
Recruiting
Leadership

Job Details

Genesis10 is seeking a Segment Risk Manager: IV (Lead) for a hybrid contract position with a leading client in Columbus, OH.

Compensation: $50-60 per hour W2.

Job Description:
The successful candidate will be responsible for comprehensive awareness centered around the configuring, maintaining, and monitoring RACF (Resource Access Control Facility) to ensure the secure management of user access, system resources, and data protection. A core focus of this role is identifying and mitigating security risks, ensuring regulatory compliance, and proactively addressing potential vulnerabilities. The ideal candidate will have deep technical knowledge of RACF and a strong understanding of risk management and information security practices in a z/OS mainframe environment.

Responsibilities:
  • Design, implement, and manage RACF security policies, including user profiles, group definitions, and resource access permissions, to minimize security risks.
  • Proactively identify vulnerabilities and security risks associated with RACF configurations and user access.
  • Conduct periodic audits of RACF settings to ensure compliance with internal security policies and industry regulations (e.g., GDPR, HIPAA).
  • Implement and monitor security controls to protect sensitive data and critical system resources.
  • Work closely with the cybersecurity team to align RACF policies with broader organizational security and risk management strategies.
  • Perform risk assessments on RACF access controls and configurations to identify potential threats or weaknesses in the system.
  • Respond to security incidents involving RACF, investigating root causes, and implementing corrective actions to prevent recurrence.
  • Collaborate with the Incident Response Team to ensure timely resolution of security breaches, unauthorized access, and other security incidents related to RACF.
  • Maintain documentation of security incidents, risk mitigation strategies, and post-incident reviews.
  • Ensure that RACF settings and policies comply with industry regulations, corporate security standards, and audit requirements.
  • Work with internal and external auditors to provide evidence of RACF security controls, processes, and audit trails.
  • Develop and maintain detailed documentation of RACF security policies, access controls, and incident response protocols.
  • Provide support during security audits by preparing reports on RACF compliance, user access reviews, and risk assessments.
  • Monitor and analyze RACF logs for suspicious activity, unauthorized access attempts, or policy violations.
  • Generate regular reports on RACF security status, including access control violations, policy exceptions, and risk analysis.
  • Present findings and recommendations for risk mitigation to senior management, security teams, and other stakeholders.
  • Stay current with developments in mainframe security and RACF best practices, and apply new techniques to improve risk management processes.
  • Develop and conduct training programs for technical staff on RACF security policies, access controls, and risk management strategies.
  • Lead efforts to automate risk management processes in RACF, including user access reviews and security policy enforcement.
Requirements:
  • 5+ years of experience working with RACF in a z/OS mainframe environment.
  • Strong experience in risk management and security within a mainframe environment, particularly related to RACF access controls and policies.
  • Demonstrated expertise in conducting security audits, risk assessments, and implementing corrective actions.
  • Experience working in regulated industries (e.g., finance, healthcare) with a focus on compliance.
Technical Skills:
  • Deep understanding of RACF architecture, security policies, and risk management techniques.
  • Expertise in analyzing and managing security vulnerabilities, risks, and incidents related to mainframe access controls.
  • Proficiency with RACF administration tools and utilities for managing users, groups, and resources.
  • Knowledge of IBM z/OS environment and related mainframe security tools.
  • Strong skills in log analysis, security monitoring, and reporting.
Preferred Certifications:
  • IBM Certified Specialist in RACF or z/OS Security.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or equivalent certifications in information security.
  • Experience with IT governance frameworks such as ISO 27001, NIST, or COBIT is a plus.


About Genesis10:
Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals.

For contract roles, Genesis10 offers the benefits listed below. If this is a perm-placement opportunity, our recruiter can talk you through the unique benefits offered for that particular client.

Benefits of Working with Genesis10:

Access to hundreds of clients, most who have been working with Genesis10 for 5-20+ years.
The opportunity to have a career-home in Genesis10; many of our consultants have been working exclusively with Genesis10 for years.
Access to an experienced, caring recruiting team (more than 7 years of experience, on average.)
Behavioral Health Platform
Medical, Dental, Vision
Health Savings Account
Voluntary Hospital Indemnity (Critical Illness & Accident)
Voluntary Term Life Insurance
401K
Sick Pay (for applicable states/municipalities)
Commuter Benefits (Dallas, NYC, SF)

For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website.

Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
#DIG10-OH
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Genesis10