The SPECIAL attribute
A user who has the SPECIAL attribute can issue all RACF® commands. The SPECIAL attribute gives the user full control over all of the RACF profiles in the RACF database.
The SPECIAL attribute can be delegated only by a user who has the SPECIAL attribute. It should be limited to the RACF security and group administrators. Persons having the SPECIAL attribute should be required to use operator identification cards and passwords or password phrases, and should change their passwords or password phrases often to help ensure security.
You can assign the SPECIAL attribute at the group level. When you do, the group-SPECIAL user has full control over all of the profiles within the scope of the group. For additional details, see User attributes at the group level.