STIGQter STIGQter: STIG Summary: IBM z/OS RACF Security Technical Implementation Guide Version: 9 Release: 9 Benchmark Date: 01 Jul 2026:

The IBM z/OS system administrator (SA) must develop a process to notify appropriate personnel when accounts are removed.

DISA Rule

SV-223765r998364_rule

Vulnerability Number

V-223765

Group Title

SRG-OS-000277-GPOS-00107

Rule Version

RACF-OS-000090

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop a documented develop a process to notify appropriate personnel when accounts are removed.

Check Contents

Ask the SA for the documented process to notify appropriate personnel when accounts are removed.

If there is no documented process, this is a finding.

Vulnerability Number

V-223765

Documentable

False

Rule Version

RACF-OS-000090

Severity Override Guidance

Ask the SA for the documented process to notify appropriate personnel when accounts are removed.

If there is no documented process, this is a finding.

Check Content Reference

M

Target Key

4101