Mainframe Path Start learning free
AppliedSecurity32 min

Mainframe security engineering

The next step after RACF basics: how SAF and the three security managers compare, how certificates, AT-TLS and pervasive encryption protect data, and how auditing, privileged access control and incident handling work in a regulated shop.

What you will be able to do

Lessons

  1. SAF and the three security managers
    z/OS products do not check security themselves. They ask SAF, which passes the question to the installed external security manager: RACF, ACF2 or Top Secret.
  2. Certificates, TLS and encryption
    Data on the mainframe is protected in transit with TLS and at rest with encryption.
  3. Auditing, privileged access and security operations
    Security is proven by evidence. The ESM writes SMF records of who did what, auditors check them against policy, and the most powerful identities are controlled tightly.

Track your progress and earn a certificate.
Free account, 15 quiz questions for this subject.

Start this subject