RACF Specialist - Remote Resource Access Control Facility (RACF) is a security program that serves as a component of the Security Server for the z/OS operating system. It provides tools to help manage access to critical resources on a mainframe system. |
Key Project areas they need to support: |
User Identification and Authentication: RACF uses a user ID and a system-encrypted password to identify and verify users. It can also authenticate users with a password phrase, digital certificate, Kerberos ticket, or a PassTicket. |
Authorization: RACF authorizes users to access protected resources based on the security policies defined in its database. This database retains information about users, resources, and access authorities. |
Logging and Reporting: RACF logs and reports various attempts to access protected resources, whether successful or unsuccessful. This feature helps in detecting security exposures or threats. |
Access Control: RACF controls the means of access to resources, allowing management to adopt the principle of the least possible privilege. This principle restricts access to sensitive resources to only those whose normal duties require their use. Manage and maintain the RACF environment. Tasks will include daily RACF operations and maintenance, which may also include version upgrades and applying fixes/patches. |