| Checked | Name | Title |
|---|
| ☐ | SV-259728r1050748_rule | Access to IBM Security zSecure installation data sets must be properly restricted and logged. |
| ☐ | SV-259729r960960_rule | Access to IBM Security zSecure STC data sets must be properly restricted and logged. |
| ☐ | SV-259730r1050750_rule | Access to IBM Security zSecure user data sets must be properly restricted and logged. |
| ☐ | SV-259731r1051324_rule | Started tasks for IBM Security zSecure products must be properly defined. |
| ☐ | SV-259732r961095_rule | Access to IBM Security zSecure program resources must be limited to authorized users. |
| ☐ | SV-259733r1050755_rule | IBM Security zSecure must prevent nonprivileged users from executing privileged zSecure functions. |
| ☐ | SV-259734r1050758_rule | The IBM Security zSecure programs CKFCOLL and CKGRACF, and the APF-authorized version of program CKRCARLA, must be restricted to security administrators, security batch jobs performing External Security Manager (ESM) maintenance, auditors, and systems programmers, and must be audited. |
| ☐ | SV-259735r961458_rule | IBM Security zSecure must implement organization-defined automated security responses if baseline zSecure configurations are changed in an unauthorized manner. |
| ☐ | SV-259736r961677_rule | IBM Security zSecure must remove all upgraded/replaced zSecure software components that are no longer required for operation after updated versions have been installed. |
| ☐ | SV-259737r961683_rule | IBM Security zSecure system administrators must install security-relevant zSecure software updates within the time period directed by an authoritative source (e.g., IAVMs, CTOs, DTMs, and STIGs). |
| ☐ | SV-259738r961863_rule | XFACILIT class, or alternate class if specified in module CKRSITE, must be active. |