News
Abstract
This document provides an overview of the compliance standards available in zSecure Compliance 3.2 on March 27, 2026.
Automation is added for CIS IBM CICS for z/OS Benchmark 1.1.0. DISA STIG standards are updated to the new versions published by DISA in January 2026.
Content
Summary of changes since zSecure 3.2 (September 2025)
- The following versions were updated:
| Standard name | Version RACF | Version ACF2 | Version Top Secret |
|---|---|---|---|
| z/OS BMC CONTROL-D STIG | 7.02 | 7.02 | 7.02 |
| z/OS BMC CONTROL-M/Restart | 7.02 | 7.02 | 7.02 |
| z/OS BMC CONTROL-M STIG | 7.02 | 7.02 | 7.02 |
| z/OS BMC CONTROL-O STIG | 7.02 | 7.02 | 7.02 |
| z/OS BMC Integrated Operations Architecture (IOA) STIG | 7.02 | 7.02 | 7.02 |
| z/OS BMC MainView Systems Management STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Auditor STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Common Services STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Management Information Control System (MICS) Resource Management STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Multi-image Manager (MIM) Resource Sharing STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Roscoe Interactive Environment STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA Vtape Virtual Tape System STIG | 7.02 | 7.02 | 7.02 |
| z/OS CA 1 Tape Management STIG | 7.02 | 7.02 | 7.02 |
| z/OS Catalog Solutions STIG | 7.02 | 7.02 | 7.02 |
| z/OS Compuware Abend-AID STIG | 7.02 | 7.02 | 7.02 |
| z/OS Fast Dump Restore (FDR) STIG | 7.02 | 7.02 | 7.02 |
| z/OS Front End Processor (FEP) STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM CL/SuperSession STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM Communications Server Simple Mail Transfer Protocol (CSSMTP) STIG | 7.01 | 7.01 | 7.01 |
| z/OS IBM Customer Information Control System (CICS) Transaction Server STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM Hardware Configuration Definition (HCD) STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM HealthChecker STIG | 7.01 | 7.01 | 7.01 |
| z/OS IBM MQ STIG | 7.03 | 7.02 | 7.02 |
| z/OS IBM System Display and Search Facility (SDSF) STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM Tivoli® Asset Discovery (TADz) STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM Transparent Data Migration Facility (TDMF) STIG | 7.02 | 7.02 | 7.02 |
| z/OS IBM WebSphere® Application Server (WAS) STIG | 7.02 | 7.02 | 7.02 |
| z/OS Quest NC-Pass STIG | 7.02 | 7.02 | 7.02 |
| IBM Z® NetView | 7.02 | 7.02 | 7.02 |
| z/OS SRRAUDIT STIG | 7.02 | 7.02 | 7.02 |
| z/OS Vanguard Security Solutions (VSS) STIG | 7.02 |
- Automation for the following CIS IBM CICS for z/OS Benchmark controls is added:
| CIS-CICS-1.1.1 | Ensure that RACF changes are accepted immediately |
| CIS-CICS-1.2.1 | Ensure that only authorized users can run transactions |
| CIS-CICS-1.2.2 | Ensure that only authorized users can access resources |
| CIS-CICS-1.3.1 | Ensure that SIT parameter SEC=YES is set in all regions |
| CIS-CICS-1.4.1 | Ensure that only authorized users can issue SPI commands |
| CIS-CICS-1.4.2 | Ensure that a user requires authorization to start work under a different userid |
| CIS-CICS-2.1.1 | Ensure that passwords are redacted in line traces |
| CIS-CICS-3.1.1 | Ensure that no unencrypted IP connections use BASICAUTH |
The updates are indicated by revision bars in the left margin of the PDF file for this version: zSecure Compliance 3.2.0 Compliance Standards (March 2026).
Previous versions
Related Information
[{"Line of Business":{"code":"LOB70","label":"Z TPS"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSO5Y9T","label":"IBM Z Security and Compliance Center"},"ARM Category":[{"code":"a8m3p000000hC73AAE","label":"ZSCC-\u003EDocumentation"}],"Platform":[{"code":"PF035","label":"z\/OS"}],"Version":"1.3.0","Type":"MASTER"},{"Line of Business":{"code":"LOB70","label":"Z TPS"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSHFX9","label":"IBM zSecure Audit"},"ARM Category":[{"code":"a8m0z000000GoYsAAK","label":"zSecure Audit-\u003EDocumentation"}],"Platform":[{"code":"PF035","label":"z\/OS"}],"Version":"3.2.0","Type":"MASTER"},{"Line of Business":{"code":"LOB70","label":"Z TPS"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSGP61P","label":"IBM zSecure Compliance"},"ARM Category":[{"code":"a8m0z000000GoYsAAK","label":"zSecure Audit-\u003EDocumentation"}],"Platform":[{"code":"PF035","label":"z\/OS"}],"Version":"3.2.0","Type":"MASTER"}]
Was this topic helpful?
Document Information
Modified date:
27 March 2026
UID
ibm17259733