It sounds to me like you've got a good basic understanding of the security process. DB2 runs on many platforms, and the process of securing the database is different on each of them... In other words, Z/OS is quite different from Windows or Linux.
I'm going to move this thread to the DB2 forum. I think it will get much better answers there than it will here in the Chit Chat forum!
-PatP