Mainframe Security Engineer (Hybrid local to NY)
Position name: Security Specialist
Duration: 6+ months with possible extension
Location: 5 Manhattan West (450 West 33rd Street), New York, New York 10001
First round Webcam Interview
Second round In person required.
Hybrid role: 3 days onsite
The Financial Information Services Agency and Office of Payroll Administration (FISA-OPA) has a vacancy for an Security Specialist reporting to the Application Security Manager. The ideal candidate should have extensive experience with CA s mainframe security software, ACF2 or Top Secret or RACF.
Substitute experience may include mainframe environments (z/OS, JES2, SMP/E, TSO, IOF, JCL, IOCP/HCD), monitoring tools (TMON, Mainview, OMEGAMON), development and automation (COBOL, REXX, JCL, PROCS, CTLCARDS), and database systems (IMS, DB2).
Responsibilities include:
- Utilizing ACF2 control access to TSO (ISPF), application data, and system files including JCL libraries, program libraries, etc.
- Develop and update ACF2 rules based on submitted authorization from end user agency security officers.
- Develop access to sequential datasets, DB2 databases, IMS databases and transactions, LDAP, the CAScheduler and systems services (e.g. JES2).
- Modify and maintain groups to which new users are added or removed.
- Test security product upgrades.
- Document and update product usage and procedures.
- Installation of certificates; end-user re-certifications; password rests; review of access violations; generate reports detailing user access; rules libraries backup and restore; ongoing product education; conforming to industry standards for product use.
Preferred Skills:
- Experience using ACF2 to develop/create security profiles, establish user-IDs, and reset passwords
- Experience with Top Secret or RACF
- In-depth understanding of information security policies, practices, regulatory, and industry compliance issues
- Experience in responding to audit and investigatory requests securely, promptly, and accurately
- Experience maintaining SSL certificates
- Understanding and knowledge of role-based security models and enterprise-wide security administration
- Experience working with z/OS, JES2, SMPIE, TSO, IOF, JCL, IOCPIHCD
- Experience using monitoring tools such as TMON, Mainview, OMEGAMON
- Experience with COBOL, REXX, JCL, PROCS, and CTLCARDS
- Experience with IMS and 0B2
- Familiarity with file transfer protocols such as FTPS and Connect:Direct
- Experience with Rational Tools (ClearQuest and ClearCase)
- Knowledge of CA Scheduler, Workload Automation dSeries, or similar tools
- Familiarity with PeopleSoft People Tools
- Strong troubleshooting experience in a production environment
- Hands-on experience with enterprise-wide projects in large-scale financial/government environments
- Strong understanding of standard SDLC methodologies
- Excellent communication skills (oral and written), interpersonal skills, and organizational skills
- Ability to adapt to changing workloads and evolving security requirements
- Strong analytical thinking and problem-solving for troubleshooting security and system issues.
Education:
- A bachelor’ s degree or 10 + years of experience in a relevant technical field is required.