> Markdown version of [/jobs/ext/1818662-resident-engineer-cyber-asset-management-caasm-runzero-ts-sci-reston-va](https://www.wearedevelopers.com/jobs/ext/1818662-resident-engineer-cyber-asset-management-caasm-runzero-ts-sci-reston-va). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Resident Engineer - Cyber Asset Management (CAASM/RunZero) | TS/SCI | Reston, VA - **Company:** Novacoast, Inc. - **Location:** Reston, VA, United States - **Experience:** Experienced - **Salary:** $260,000.0 - $312,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Configuration Management Databases, CompTIA Security+, Cyber Security, Computer Networks, Dynamic Host Configuration Protocol, Domain Name System (DNS), Ethernet, Identity and Access Management, Virtual Private Networks (VPN), JSON, Python (Programming Language), Modbus, Routing, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, OPC Unified Architecture, Security Information and Event Management, Simple Network Management Protocols, Systems Integration, TCP/IP, Software Vulnerability Management, Google Cloud, Cloud Platform System, Firewalls (Computer Science), Tanium Platform Expertise, Falcon Platform, Bacnet, Enterprise Integration, Restful APIs, Splunk, SentinelOne Expertise, Qualys, Security Orchestration, Automation & Response - **Published:** July 28, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=3be2db4071a03b81 ## About the Role * 5+ years of cybersecurity engineering, Cyber Asset Attack Surface Management (CAASM), cyber asset management, exposure management, vulnerability management, security operations, or technical consulting. * Hands-on experience administering RunZero or comparable CAASM platforms such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, Wiz, or ServiceNow CMDB. * Strong understanding of enterprise networking concepts and protocols including TCP/IP, DNS, DHCP, SNMP, routing, firewalls, VPNs, and enterprise network discovery. * Experience building integrations and automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise platform integrations. * Experience supporting vulnerability management, asset discovery, exposure management, asset correlation, CVE/CVSS prioritization, and continuous monitoring. * Strong customer-facing consulting, communication, documentation, and presentation skills with the ability to work independently as an embedded Resident Engineer. * Active Top Secret / SCI security clearance is required. Bonus Points If You Have * Experience supporting Federal Civilian or Department of Defense environments, including RMF, FedRAMP, FISMA, Zero Trust, Continuous Monitoring, Authority to Operate (ATO), or CISA directives. * Experience with enterprise security technologies such as ServiceNow CMDB/ITOM, Microsoft Defender, CrowdStrike, SentinelOne, Splunk, Microsoft Entra ID, AWS, Azure, or Google Cloud Platform. * Experience supporting Operational Technology (OT/ICS) environments using technologies such as the Purdue Model, ISA/IEC 62443, NIST 800-82, Modbus, BACnet, DNP3, OPC UA, EtherNet/IP, or Profinet. * Experience integrating cybersecurity platforms with CMDBs, SIEM/SOAR solutions, identity platforms, cloud environments, or enterprise automation tools. * Experience leading customer engagements, technical workshops, architecture discussions, or enterprise cybersecurity modernization initiatives. * Industry certifications such as CISSP, CISM, Security+, CySA+, GCIH, GCIA, GICSP, CCNA, or cloud security certifications. * Previous experience serving as a Resident Engineer, Technical Consultant, Solutions Engineer, Professional Services Engineer, or Customer Success Engineer within a cybersecurity consulting organization., * Do you have an Active Top Secret/SCI security clearance? * Please describe your hands-on experience with RunZero. If you don't have RunZero experience, list the cyber asset management or exposure management platforms you've administered (such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, or ServiceNow CMDB) and briefly explain what you were responsible for. * Describe your experience working directly with customers or stakeholders as a consultant, Resident Engineer, Professional Services Engineer, or technical advisor. What types of engagements did you support? Experience: * hands-on RunZero: 2 years (Required) ## Description Help shape the future of enterprise cyber asset visibility for a classified federal customer while serving as the technical lead for a mission-critical CAASM program powered by RunZero., Novacoast is seeking an experienced Cyber Asset Attack Surface Management (CAASM) Engineer with deep expertise in RunZero to support a classified federal customer in Reston, Virginia. This is a highly technical, customer-facing consulting role where you'll serve as the embedded technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program. Rather than simply administering a security platform, you'll help shape the customer's enterprise asset visibility strategy by administering, optimizing, integrating, and continuously improving RunZero as its authoritative cyber asset visibility solution. Working alongside security leadership, ISSOs, vulnerability management teams, network engineers, and system owners, you'll improve enterprise asset discovery, strengthen exposure management, and deliver actionable cyber asset intelligence across traditional IT, cloud, OT/ICS, IoT, mobile, and remote environments. If you're passionate about cyber asset visibility, exposure management, automation, and helping organizations mature their cybersecurity programs, we'd love to hear from you. What You'll Do Lead the Cyber Asset Attack Surface Management (CAASM) Program * Serve as the technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program. * Improve enterprise-wide visibility across IT, cloud, OT/ICS, IoT, mobile, and remote environments. * Discover unknown, unmanaged, rogue, orphaned, and high-risk assets while improving enterprise asset inventory accuracy. * Partner with security teams to strengthen exposure management, reduce cyber risk, and support Zero Trust initiatives. Administer & Optimize RunZero * Serve as the organization's primary RunZero Subject Matter Expert. * Administer, optimize, and continuously improve RunZero organizations, Explorers, RBAC, dashboards, reporting, scan templates, scheduling, tagging strategies, and discovery workflows. * Monitor platform health, troubleshoot issues, improve discovery accuracy, and maximize enterprise asset visibility. Integrations & Automation * Design and maintain integrations between RunZero and enterprise technologies including ServiceNow CMDB, vulnerability management, EDR/XDR, SIEM/SOAR, cloud, and identity platforms. * Develop automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise workflows to improve reporting, asset intelligence, and operational efficiency. Customer Consulting & Technical Leadership * Serve as the embedded technical advisor supporting the customer's Cyber Asset Attack Surface Management strategy. * Partner with customer stakeholders, deliver technical guidance, develop operational documentation, and provide knowledge transfer that strengthens long-term program maturity. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Optimizing Land-Based Fish Feeding with Node-RED](https://www.wearedevelopers.com/videos/2032-optimizing-land-based-fish-feeding-with-node-red) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Introducing JSON Structure](https://www.wearedevelopers.com/videos/100219-introducing-json-structure) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)