> Markdown version of [/jobs/ext/2733026-security-analyst](https://www.wearedevelopers.com/jobs/ext/2733026-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Analyst - **Company:** Hire IT People - **Location:** Petersburg, PA, United States - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Software System Penetration Testing, Confluence, JIRA, Cyber Security, IBM Resource Access Control Facility, Software Tools, Microsoft SharePoint, Software Vulnerability Management, Z/OS - **Published:** September 5, 2026 - **Apply:** https://ats.hireitpeople.com/candidate/apply/41394-security-analyst ## About the Role * z/OS ACF2 or TSS 10+ years. * Vulnerability Management (some exposure). * Good communicator and some exposure to JIRA, Confluence, and SharePoint. Education Requirement: BS Degree and/or 15+ years of Mainframe Security experience. Software Skills Required (if applicable): ACF2 or TSS Mainframe Security work, zSecure programming using CARLa code. ## Description * Resource provides day to day tactical execution of project. Including detailed analytics of various data points. Mainframe Security expert who will guide projects, asset modelling, and make project documentation entries as required. * Serve as a subject matter expert on Mainframe Security Systems including ACF2, TSS, and RACF as a part of a vulnerability management projects. * zSecure Audit experience required (7-10 years) * Leveraged z/OS ACF2/TSS/RACF STIG in hardening efforts. * Seeking an expert in Broadcom ACF2 and/or Top Secret (TSS) * Must know Mainframe REXX, IBM SYNC SORT, and ICETOOL * Direct interface with Client staff on training and day to day questions of our home-grown Vulnerability tool and other utility tools to manage vulnerabilities. * Determine security standards regarding z/OS hardening, security controls, and vulnerability remediation. * Communicate between mainframe engineering teams and information security teams. * z/OS security consulting / penetration testing background preferred * Good communication and documentation skills ## Related Videos - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [42 x 2 Canvases Later: Two Years, Two Minds, Many Lessons](https://www.wearedevelopers.com/videos/1458-42-x-2-canvases-later-two-years-two-minds-many-lessons) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [A Founder's Journey : From Startup Chaos to Purposeful Growth](https://www.wearedevelopers.com/videos/1926-a-founder-s-journey-from-startup-chaos-to-purposeful-growth) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)