Title: RACF Architect
Location: REMOTE (Candidates from US and Canada)
Duration: 12-18+ Months Contract
Video Interviews
Experience- 15+ years Required
Job Description
• RACF database analysis, restructuring, and cleanup
• User ID, group, and role rationalization
• Dataset, general resource, and subsystem profile remediation
• Implementation of least-privilege access controls
• Elimination of orphaned and excessive access
• Standardization of security naming conventions and models
• Alignment of RACF controls with z/OS system configurations
• Implementation of enhanced auditing, SMF logging, and monitoring controls
• Support for audit findings and regulatory remediation "
"Qualifications:
• 15+ years of z/OS security experience with progressive leadership responsibilities
• Demonstrated track record architecting security solutions for large-scale enterprises
• Experience presenting to and advising executive leadership and board committees
• Industry certifications preferred: CISSP, CISM, IBM Certified z/OS Security Expert
• Architect-level mastery of RACF / ESM security design, implementation, and governance
Expert knowledge of:
• Advanced USS security architecture (UIDs, GIDs, OMVS, POSIX, superuser controls)
• FACILITY, UNIXPRIV, STARTED, CSFSERV, CRYPTOZ classes and their strategic application
• zFS/HFS architecture, mount security, enterprise auditing and SIEM integration
• Multi-LPAR, Sysplex, and cross-platform security architecture
• Extensive experience with:
• Security architecture frameworks (SABSA, TOGAF, NIST CSF)
• Enterprise risk management and security governance
• Regulatory compliance architecture (SOX, PCI-DSS, GDPR, industry-specific regulations)"