Mainframe Security EngineerLocation: Pittsburgh, PA or Lake Mary, FL
We are seeking an experienced
Mainframe Security Engineer to provide day-to-day tactical support for vulnerability management and z/OS security initiatives. This role will serve as a subject matter expert across ACF2, TSS, and RACF, supporting security hardening, vulnerability remediation, asset modeling, project documentation, and collaboration between mainframe engineering and information security teams.
Key Responsibilities- Serve as a subject matter expert in z/OS Mainframe Security, including ACF2, TSS, and RACF.
- Support vulnerability management initiatives, security hardening, and vulnerability remediation.
- Apply z/OS STIGs and security controls to mainframe environments.
- Perform detailed data analysis and asset modeling to support security projects.
- Provide guidance on security standards and hardening requirements.
- Interface directly with client teams to provide training and day-to-day support for vulnerability and utility tools.
- Develop and maintain project documentation and communicate between mainframe engineering and information security teams.
Required Qualifications- 7-10+ years of zSecure Audit experience, including CARLa programming.
- Strong experience with Broadcom ACF2 and/or Top Secret (TSS).
- Hands-on experience leveraging z/OS RACF STIGs for security hardening.
- Strong knowledge of Mainframe REXX, IBM SYNCSORT, and ICETOOL.
- Experience with mainframe security vulnerability management.
- Strong communication, documentation, and client-facing skills.
- Bachelor's degree or 15+ years of Mainframe Security experience.
Preferred Qualifications- z/OS security consulting or penetration testing experience.
- 10+ years of ACF2 or TSS experience.
- Experience with JIRA, Confluence, and SharePoint.
#LI-MD1