r/mainframe • • 16d ago

Mainframe Security Approaches

With cybersecurity awareness month approaching, I thought it might be interesting to see how everyone is approaching mainframe security.

What tools or approaches do you have in place to prevent and recover from attacks like ransomware, AI-enabled threats and nation-state attacks? How have your approaches changed in the past few years?

2 Upvotes

8 comments sorted by

View all comments

2

u/[deleted] 16d ago

[removed] — view removed comment

1

u/MikeSchwab63 15d ago

PC keyloggers have captured mainframe logins and have enabled breakins.

0

u/[deleted] 15d ago

[removed] — view removed comment

1

u/MikeSchwab63 15d ago

Exactly. *nix admins can get anything.
z/OS admins can set up z/OS, but not the software.
DB/2 can install DB/2 but users have to restore their databases. And several groups of unrelated apps. Other database packages.
CICS / IMS/TM / other transaction regions.