Job D3741 Description Click to apply: Please attach resume to mail
SOFT's client located in New York, NY is looking for a Mainframe Security Engineer - RACF for a long term contract assignment.
  • The responsibilities will include the ability to develop and maintain the Enterprise-wide Mainframe RACF / Vanguard suite.
  • This position is a highly skilled technical position that will perform activities related to securing and expanding the foundation to support Mainframe RACF / Vanguard suite. .
  • Desired knowledge, skills and abilities for this position include, project management expertise with implementations in a large-scale enterprise environment.
  • Strong organizational skills with ability to manage multiple projects concurrently, Working knowledge of a broad range of current security appliances, tools, and applications and security methodologies related to RACF / Vanguard tools.
  • Excellent verbal and written communication skills, as well as ability to present and explain technical information.
  • Strong analytical and organizational skills.
  • Demonstrated competency in resolving diverse and complex business problems.
Must be able to work outside of normal working hours as needed to support and resolve security needs. Responsibilities include the following:
  • Daily support for any Mainframe / RACF security and account administration issues
  • Analyze all the Mainframe risk-related activities of client’s IT organization, planning, testing, reporting and recommending appropriate remediation measures.
  • Assist in Application Security vulnerability analysis of existing and new Mainframe / RACF applications.
  • Recommend corrective actions to fix the application security related problems such as user access / management in the Mainframe / RACF applications.
  • Assist with the monitoring of risk mitigation and coordination of policy and controls with the compliance manager, director and the chief information security officer (CISO), to ensure that other managers and IT staff are taking effective remediation steps.
  • Benchmark the risk management practices of other companies — particularly those in transportation and state government to maintain an up-to-date understanding of industry best practices, and monitor the legal and regulatory environment for developments that could require changes to client’s established IT policies and practices.
  • Create, disseminate and (as required) update documentation of client’s matrix of identified IT risks and controls.
  • Work directly with the Identity and Access Management Team business units and other internal departments and organizations to facilitate RACF Mainframe IT risk analysis and risk management processes, identify acceptable levels of residual risk, and establish roles and responsibilities related to information classification and protection within IDM SailPoint, Azure and Active Directory.
  • Coordinate information security and risk management projects with personnel from the IT organization, lines of business, and other internal departments and organizations.
  • Facilitate business alignment and communications by forming an IT risk management steering committee or advisory board