Live opening · Posted 1 day ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Creospan is a subsidiary of Creospan Inc., our parent company, headquartered in Chicago, IL. From our humble beginnings in 1999 – with just a handful of employees and a mission to help our clients leverage emerging web technologies to build next-generation products – technology has changed dramatically, yet our curiosity has remained constant. Our expertise spans across Telecom, Technology, Manufacturing, Ecommerce, Insurance, Banking, Transportation, and Healthcare domains.
To find out more about us, visit our website: www.creospan.com
We are looking for an ACF2 to RACF Migration & RBAC specialist to lead the enterprise security architecture for ACF2 to RACF migration and subsequent RBAC conversion across the IBM Z estate. This role includes coordination with Vendors, execution partners, mainframe subsystem SMEs, cyber, risk, audit, and application stakeholders to ensure the conversion is technically sound, controlled, auditable, and operationally sustainable.
Key Skills and Expertise
ACF2, RACF, RBAC, SAF, RACROUTE, ACF2 LoginIDs, UID strings, dataset rules, resource rules, RACF groups, connects, permits, class strategy, privileged access, SURROGAT, STARTED, OPERCMDS, FACILITY, USS, certificates, SMF, audit evidence, SoD, access certification, Vendors tooling, conversion governance, and regulated banking controls.
Key Responsibilities
Lead the overall ACF2 to RACF migration architecture and RBAC conversion strategy across production, DR, and test environments.
Define the target RACF security model including group hierarchy, profile ownership, class activation strategy, access naming standards, and logging expectations.
Approve ACF2-to-RACF mapping principles for LoginIDs, UID strings, dataset rules, resource rules, privileged IDs, service IDs, generic IDs, and exceptions.
Own the RBAC target-state architecture covering business roles, technical roles, infrastructure support roles, application roles, service roles, and emergency access roles.
Govern the use of Vendors conversion tooling, compare outputs, exception reports, password propagation, certificate migration support, and RBAC collection methodology.
Chair security design decisions across RACF engineering, infrastructure, CICS/MQ, Db2, IMS, testing, cutover, and governance workstreams.
Define security acceptance criteria for migration waves, mock cutovers, production cutover, fallback, and post-migration hypercare.
Own risk and exception decisions related to over-permissioning, orphan access, wildcard access, privileged attributes, SoD conflicts, and residual control gaps.
Provide technical direction to execution partners and review MSP/vendor designs, runbooks, conversion outputs, issue logs, and evidence packs.
Prepare senior stakeholder updates on migration readiness, security risk, design decisions, conversion progress, and RBAC maturity.
Experience and Qualifications
12+ years of IBM Z security, RACF/ACF2 architecture, or mainframe infrastructure security experience.
Proven experience leading security transformations, RACF redesign, ACF2-to-RACF migration, or large-scale access governance programs.
Strong understanding of mainframe subsystem security across z/OS, CICS, Db2, MQ, IMS, USS, batch, network, storage, GDPS, and automation.
Experience operating in regulated banking or financial services environments with audit, risk, SoD, and privileged access controls
If interested, please share your updated resume at the earliest.
Job Location- Pune/Bangalore
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.