Chapter 5. Auditing

Few things instill more fear in security administrators and systems programmers than learning that their system has been selected for an audit. That’s really a shame because when a system is properly managed, having an auditor review the system should result in the auditor finding nothing significant. The best way to ensure that is to routinely review your system and fix problems before the auditor comes to town. In this chapter, we introduce you to the role of the auditor and show the various RACF utilities you can use to help ensure that your system passes muster.

Auditing

At a high level, the auditor has a very simple job: ensure that the installation security policy is being followed. The auditor might want to look at lots ...

Get Mainframe Basics for Security Professionals: Getting Started with RACF now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.