Resident Engineer - Cyber Asset Management (CAASM/RunZero) | TS/SCI | Reston, VA

Novacoast, Inc.
Reston, VA, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$260,000.0 - $312,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Cloud Computing Security Configuration Management Databases CompTIA Security+ Cyber Security Computer Networks Dynamic Host Configuration Protocol Domain Name System (DNS) Ethernet
+28 more
Identity and Access Management Virtual Private Networks (VPN) JSON Python (Programming Language) Modbus Routing Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access OPC Unified Architecture Security Information and Event Management Simple Network Management Protocols Systems Integration TCP/IP Software Vulnerability Management Google Cloud Cloud Platform System Firewalls (Computer Science) Tanium Platform Expertise Falcon Platform Bacnet Enterprise Integration Restful APIs Splunk SentinelOne Expertise Qualys Security Orchestration, Automation & Response

Job description

Help shape the future of enterprise cyber asset visibility for a classified federal customer while serving as the technical lead for a mission-critical CAASM program powered by RunZero., Novacoast is seeking an experienced Cyber Asset Attack Surface Management (CAASM) Engineer with deep expertise in RunZero to support a classified federal customer in Reston, Virginia.

This is a highly technical, customer-facing consulting role where you’ll serve as the embedded technical lead for the customer’s Cyber Asset Attack Surface Management (CAASM) program. Rather than simply administering a security platform, you’ll help shape the customer’s enterprise asset visibility strategy by administering, optimizing, integrating, and continuously improving RunZero as its authoritative cyber asset visibility solution.

Working alongside security leadership, ISSOs, vulnerability management teams, network engineers, and system owners, you’ll improve enterprise asset discovery, strengthen exposure management, and deliver actionable cyber asset intelligence across traditional IT, cloud, OT/ICS, IoT, mobile, and remote environments.

If you’re passionate about cyber asset visibility, exposure management, automation, and helping organizations mature their cybersecurity programs, we’d love to hear from you.

What You’ll Do Lead the Cyber Asset Attack Surface Management (CAASM) Program

  • Serve as the technical lead for the customer’s Cyber Asset Attack Surface Management (CAASM) program.
  • Improve enterprise-wide visibility across IT, cloud, OT/ICS, IoT, mobile, and remote environments.
  • Discover unknown, unmanaged, rogue, orphaned, and high-risk assets while improving enterprise asset inventory accuracy.
  • Partner with security teams to strengthen exposure management, reduce cyber risk, and support Zero Trust initiatives.

Administer & Optimize RunZero

  • Serve as the organization’s primary RunZero Subject Matter Expert.
  • Administer, optimize, and continuously improve RunZero organizations, Explorers, RBAC, dashboards, reporting, scan templates, scheduling, tagging strategies, and discovery workflows.
  • Monitor platform health, troubleshoot issues, improve discovery accuracy, and maximize enterprise asset visibility.

Integrations & Automation

  • Design and maintain integrations between RunZero and enterprise technologies including ServiceNow CMDB, vulnerability management, EDR/XDR, SIEM/SOAR, cloud, and identity platforms.
  • Develop automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise workflows to improve reporting, asset intelligence, and operational efficiency.

Customer Consulting & Technical Leadership

  • Serve as the embedded technical advisor supporting the customer’s Cyber Asset Attack Surface Management strategy.
  • Partner with customer stakeholders, deliver technical guidance, develop operational documentation, and provide knowledge transfer that strengthens long-term program maturity.

Requirements

  • 5+ years of cybersecurity engineering, Cyber Asset Attack Surface Management (CAASM), cyber asset management, exposure management, vulnerability management, security operations, or technical consulting.
  • Hands-on experience administering RunZero or comparable CAASM platforms such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, Wiz, or ServiceNow CMDB.
  • Strong understanding of enterprise networking concepts and protocols including TCP/IP, DNS, DHCP, SNMP, routing, firewalls, VPNs, and enterprise network discovery.
  • Experience building integrations and automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise platform integrations.
  • Experience supporting vulnerability management, asset discovery, exposure management, asset correlation, CVE/CVSS prioritization, and continuous monitoring.
  • Strong customer-facing consulting, communication, documentation, and presentation skills with the ability to work independently as an embedded Resident Engineer.
  • Active Top Secret / SCI security clearance is required.

Bonus Points If You Have

  • Experience supporting Federal Civilian or Department of Defense environments, including RMF, FedRAMP, FISMA, Zero Trust, Continuous Monitoring, Authority to Operate (ATO), or CISA directives.
  • Experience with enterprise security technologies such as ServiceNow CMDB/ITOM, Microsoft Defender, CrowdStrike, SentinelOne, Splunk, Microsoft Entra ID, AWS, Azure, or Google Cloud Platform.
  • Experience supporting Operational Technology (OT/ICS) environments using technologies such as the Purdue Model, ISA/IEC 62443, NIST 800-82, Modbus, BACnet, DNP3, OPC UA, EtherNet/IP, or Profinet.
  • Experience integrating cybersecurity platforms with CMDBs, SIEM/SOAR solutions, identity platforms, cloud environments, or enterprise automation tools.
  • Experience leading customer engagements, technical workshops, architecture discussions, or enterprise cybersecurity modernization initiatives.
  • Industry certifications such as CISSP, CISM, Security+, CySA+, GCIH, GCIA, GICSP, CCNA, or cloud security certifications.
  • Previous experience serving as a Resident Engineer, Technical Consultant, Solutions Engineer, Professional Services Engineer, or Customer Success Engineer within a cybersecurity consulting organization., * Do you have an Active Top Secret/SCI security clearance?
  • Please describe your hands-on experience with RunZero. If you don’t have RunZero experience, list the cyber asset management or exposure management platforms you’ve administered (such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, or ServiceNow CMDB) and briefly explain what you were responsible for.
  • Describe your experience working directly with customers or stakeholders as a consultant, Resident Engineer, Professional Services Engineer, or technical advisor. What types of engagements did you support?

Experience:

  • hands-on RunZero: 2 years (Required)

Benefits & conditions

$125 - $150 an hour - Full-time, Contract, Pulled from the full job description

  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account
  • Dental insurance
  • Flexible spending account, $125-$150/hour (W2) 100% On-Site Reston, VA 12-Month Contract with a strong expectation of three annual renewals, In this role, you’ll help the customer:
  • Improve enterprise-wide cyber asset visibility and inventory accuracy.
  • Reduce unknown, unmanaged, rogue, and orphaned assets across the enterprise.
  • Strengthen Cyber Asset Attack Surface Management (CAASM) and exposure management capabilities.
  • Increase CMDB accuracy through improved asset discovery and correlation.
  • Deliver meaningful operational dashboards and executive reporting.
  • Improve continuous monitoring, audit readiness, and Zero Trust initiatives.
  • Build sustainable operational processes through automation, documentation, and knowledge transfer.

Pay: $125.00 - $150.00 per hour, * 401(k)

  • Dental insurance
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Paid time off
  • Vision insurance

About the company

Novacoast is a trusted cybersecurity consulting and professional services firm that helps organizations strengthen their security posture through engineering excellence, technical expertise, and customer-focused delivery. We partner with commercial enterprises and government agencies to design, implement, optimize, and support cybersecurity solutions across cloud security, identity, cyber asset management, vulnerability management, security operations, and emerging cyber technologies.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:23 min

Raspberry Pi and Modbus for feeder control

Øivind Heggland Øivind Heggland · Europe 2026 Virtual

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:12 min

Abstracting physical machine boundaries using industrial edge gateways

Freya Menzel Freya Menzel +1 · Europe 2026 Virtual

2:03 min

Distinguishing type definition constructs from data validation routines

Clemens Vasters Clemens Vasters · World Congress 2025

Videos

See all

Related articles

See all