BYOD Lab: Enforcing a Zero Trust Security Strategy in CICS Using Security Discovery
Project and Program:
Application Development,
CICS
Tags:
Proceedings,
2026,
SHARE Pittsburgh 2026
Adopting a Zero Trust security strategy for CICS workloads requires organizations to move beyond traditional transaction‑level controls and toward a model centered on continuous verification and least‑privileged access. The CICS Security Discovery capability provides a structured, low‑risk path to support this transition by analyzing existing RACF or other enterprise security manager (ESM) definitions and generating Security Discovery Data (SDD) that reveals actual resource usage and access patterns in production environments. The CICS Security Discovery Lab equips participants with hands‑on experience and practical skills to accelerate their Zero Trust journey. Through guided exercises, participants will: Extract relevant security metadata from RACF. Collect Security Discovery Data (SDD) from active CICS regions. Import both metadata and SDD into the CICS Explorer. Use the CICS Security Discovery perspective to analyze real‑world access behaviors and translate these insights into refined, role‑based resource and command security definitions. By the end of the lab, participants will be able to interpret actual access requirements, reduce the complexity associated with security modernization, and design CICS security configurations aligned with IBM’s recommended Zero Trust practices. This enables organizations to strengthen the protection of their CICS workloads while simplifying the migration from legacy security models to a more rigorous and adaptive security posture.
Back to Proceedings File Library