Senior Mainframe Security Engineer (ACF2)

Brilliant
Buffalo, NY, United States
11 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$80,900.0 - $101,100.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) COBOL (Programming Language) Cyber Security Computer Engineering Disaster Recovery Rexx (Programming Language) Identity and Access Management Intrusion Detection and Prevention Intrusion Detection Systems Key Management Mainframes Scrum Methodology
+15 more
IBM Resource Access Control Facility Role-Based Access Control Zero Trust Network Access SAS (Software) Security Information and Event Management System Programming Systems Integration Data Logging Cyberark QRadar Information Technology Easytrieve SailPoint Splunk Programming Languages

Job description

  • Collaborate with Scrum Masters, Project Managers, Application Developers, and Systems Technology teams to design, implement, and validate security solutions for new and existing applications.
  • Participate in Mainframe Security strategy, roadmap development, and continuous improvement initiatives.
  • Develop and maintain security procedures, standards, documentation, and operational runbooks.
  • Support audits, regulatory examinations, and remediation activities related to access management and security controls.
  • Review, maintain, and distribute Mainframe Security recertification, compliance, and audit reports.
  • Serve as a subject matter expert for ACF2 security architecture, rule administration, CPF propagation, identity governance, privileged access management, and access controls.
  • Design and support role based access control (RBAC), entitlement governance, and access recertification processes.
  • Design, implement, and maintain security controls supporting compliance with corporate policies, regulatory requirements, and industry standards.
  • Support security monitoring, threat detection, incident response, and logging integration efforts in partnership with Cybersecurity teams.
  • Implement and maintain data protection controls, including encryption, key management, digital certificates, and secure communications.
  • Analyze and document application dependencies, resource ownership, and security mappings to support governance and auditability.
  • Facilitate technical engagements with vendors and business partners to deliver secure and effective solutions.
  • Provide Level 2 support for Identity and Access Management and Mainframe Security services.
  • Troubleshoot SailPoint IIQ and related identity governance solutions for complex provisioning and access issues.
  • Utilize security administration and recovery utilities to manage and recover access control data and security configurations.
  • Maintain expertise in Bank applications, development environments, vendor products, and emerging security technologies.
  • Collaborate with Cybersecurity, Infrastructure, and Identity teams to integrate mainframe security capabilities with enterprise security services.
  • Identify security risks, vulnerabilities, and control gaps and develop appropriate mitigation strategies.
  • Support disaster recovery planning, cyber recovery testing, resiliency exercises, and security validation activities.
  • Mentor and coach less experienced engineers, administrators, technicians, and integrators.
  • Pursue continuous professional development in Financial Services, cybersecurity, identity governance, and mainframe technologies.
  • Adhere to the Company’s risk and regulatory standards and escalate issues.
  • Promote an inclusive work environment that reflects M&T Bank’s values.
  • Provide support for high severity production incidents during business and non-business hours as required.

Requirements

  • Combined minimum of 8 years’ higher education and/or work experience in mainframe security administration, mainframe infrastructure, systems management and/or mainframe architecture
  • Ability to lead technical initiatives spanning multiple teams and organizations
  • Ability to influence technical decisions without direct authority
  • Ability to govern service accounts, batch logon IDs, privileged IDs, and other non-human identities throughout their lifecycle.
  • Demonstrated ability to translate technical risks into business impact for leadership audiences
  • Strong analytical and problem solving skills with focus on root cause analysis and remediation
  • Experience with Zero Trust, privileged access governance, and security monitoring concepts
  • Experience managing SSL/TLS digital certificates for internal and external mainframe services.

Education and Experience Preferred:

  • Bachelor’s degree in Computer Science or Computer Engineering
  • Minimum 10 years’ professional experience in a Systems Programming, Security Engineering or Security Administration position.
  • Experience coding in multiple programming languages (EasyTrieve, Rexx, COBOL, EARL, SAS, Assembler, CA Utility) to support reports
  • Experience with report writing for ACF2
  • Experience working in Financial Services
  • Experience with multiple ESM products
  • Highly adaptable, logical and creative personality
  • Excellent written and verbal communication skills
  • Ability to communicate complex technical methods/processes to various stakeholders in understandable terms
  • Critical understanding of service delivery and client needs
  • Ability to work independently and collaboratively with others in team environment
  • Understanding of how supported technologies interact with other systems and services
  • Effective influencing skills
  • Experience supporting Mainframe MFA solutions
  • Experience with privileged access management platforms such as CyberArk
  • Experience integrating mainframe security platforms with enterprise IAM solutions such as SailPoint
  • Experience with Splunk, QRadar, Elastic, or other SIEM technologies
  • Experience with API based identity integrations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:28 min

Recognizing vital enterprise stability in legacy software development roles

Gunnar Grosch · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:48 min

Modernizing massive legacy mainframe and IBM i codebases

Maximilian Jesch Maximilian Jesch · World Congress 2026 Europe

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all