Mainframe Security/Tools Specialist

City of New YorkNew York City, NY
Onsite

About The Position

The Financial Information Services Agency has a vacancy for a Mainframe Security/Tools Specialist reporting to the Application Security Manager. The ideal candidate should have extensive hands-on experience using CA’s mainframe security software, ACF2. Candidates with equivalent experience in Top Secret or RACF are also encouraged to apply. Substitute experience includes mainframe environments (z/OS, JES2, SMP/E, TSO, IOF, JCL, IOCP/HCD), monitoring tools (TMON, Mainview, OMEGAMON), development and automation (COBOL, REXX, JCL, PROCS, CTLCARDS), and database systems (IMS, DB2). The selected candidate will be responsible for using ACF2 control access to TSO (ISPF), application data, and system files including JCL libraries, program libraries, etc. The ACF2 support staff updates the ACF2 rules based on authorization from end user agency security officers. Access is granted to sequential datasets, DB2 databases, IMS databases and transactions, LDAP, the CA-Scheduler and systems services (e.g. JES2). The team maintains the groups to which new users are added or removed. When an upgrade is made to the ACF2 product, they are responsible for testing its success. ACF2 staff is on a rotating duty roster during off-hours with remote mainframe access to handle emergencies. Other areas of responsibility include documentation of product usage and procedures; installation of certificates- end-user recertification ; password rests; review of access violations; reports detailing user access; rules libraries backup and restore; ongoing product education; conforming to industry standards for product use and training new staff.

Requirements

  • Extensive hands-on experience using CA’s mainframe security software, ACF2.
  • Equivalent experience in Top Secret or RACF.
  • Mainframe environments (z/OS, JES2, SMP/E, TSO, IOF, JCL, IOCP/HCD).
  • Monitoring tools (TMON, Mainview, OMEGAMON).
  • Development and automation (COBOL, REXX, JCL, PROCS, CTLCARDS).
  • Database systems (IMS, DB2).
  • A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or, Education and/or experience which is equivalent to '1' above.

Nice To Haves

  • Experience using ACF2 to create security profiles, establish user-IDs, and reset passwords.
  • Experience with Top Secret or RACF.
  • In-depth understanding of information security policies, practices, regulatory, and industry compliance issues.
  • Experience in responding to audit and investigatory requests securely, promptly, and accurately.
  • Experience maintaining SSL certificates.
  • Knowledge of role-based security models and enterprise-wide security administration.
  • Experience working with z/OS, JES2, SMP/E, TSO, IOF, JCL, IOCP/HCD.
  • Experience using monitoring tools such as TMON, Mainview, OMEGAMON.
  • Experience with COBOL, REXX, JCL, PROCS, and CTLCARDS.
  • Experience with IMS and DB2.
  • Familiarity with file transfer protocols such as FTPS and Connect:Direct.
  • Experience with Rational Tools (ClearQuest and ClearCase).
  • Knowledge of CA Scheduler, Workload Automation dSeries, or similar tools.
  • Familiarity with PeopleSoft PeopleTools.
  • Strong troubleshooting experience in a production environment.
  • Hands-on experience with enterprise-wide projects in large-scale financial/government environments.
  • Strong understanding of standard SDLC methodologies.
  • Excellent communication skills (oral and written), interpersonal skills, and organizational skills.
  • Ability to adapt to changing workloads and evolving security requirements.
  • Strong analytical thinking and problem-solving for troubleshooting security and system issues.

Responsibilities

  • Using ACF2 to control access to TSO (ISPF), application data, and system files including JCL libraries, program libraries, etc.
  • Updating ACF2 rules based on authorization from end user agency security officers.
  • Granting access to sequential datasets, DB2 databases, IMS databases and transactions, LDAP, the CA-Scheduler and systems services (e.g. JES2).
  • Maintaining groups to which new users are added or removed.
  • Testing upgrades to the ACF2 product.
  • Being on a rotating duty roster during off-hours with remote mainframe access to handle emergencies.
  • Documenting product usage and procedures.
  • Installation of certificates- end-user recertification.
  • Password resets.
  • Reviewing access violations.
  • Generating reports detailing user access.
  • Performing rules libraries backup and restore.
  • Ongoing product education.
  • Conforming to industry standards for product use and training new staff.

Benefits

  • health insurance
  • pension plan
  • Deferred Compensation Plan (with 457, 401K and Roth IRA options)
  • pre-tax Commuter Benefit program
  • pre-tax Flexible Spending Accounts programs
  • prescription drug coverage
  • dental benefits
  • vision care benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service