user avatar

Resident Engineer – CAASM (RunZero) | TS/SCI | Reston, VA

Novacoast Federal

Posted today

Job Requirements

Reston, VA
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Active Top Secret / SCI Clearance Required
$125–$150/hour (W2) • 100% On-Site • Reston, VA • 12-Month Contract with a strong expectation of three annual renewals

Key Technologies
RunZero • CAASM • ServiceNow CMDB • Python • REST APIs • AWS • Azure • Google Cloud Platform • Splunk • CrowdStrike • Microsoft Defender • SIEM/SOAR • EDR/XDR • OT/ICS • Zero Trust • RMF • FedRAMP • FISMA • Enterprise Networking

About Novacoast
Novacoast is a trusted cybersecurity consulting and professional services firm that helps organizations strengthen their security posture through engineering excellence, technical expertise, and customer-focused delivery. We partner with commercial enterprises and government agencies to design, implement, optimize, and support cybersecurity solutions across cloud security, identity, cyber asset management, vulnerability management, security operations, and emerging cyber technologies.

Position Overview

Novacoast is seeking an experienced Cyber Asset Attack Surface Management (CAASM) Engineer with deep expertise in RunZero to support a classified federal customer in Reston, Virginia.
This is a highly technical, customer-facing consulting role where you'll serve as the embedded technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program. Rather than simply administering a security platform, you'll help shape the customer's enterprise asset visibility strategy by administering, optimizing, integrating, and continuously improving RunZero as its authoritative cyber asset visibility solution.
Working alongside security leadership, ISSOs, vulnerability management teams, network engineers, and system owners, you'll improve enterprise asset discovery, strengthen exposure management, and deliver actionable cyber asset intelligence across traditional IT, cloud, OT/ICS, IoT, mobile, and remote environments.
If you're passionate about cyber asset visibility, exposure management, automation, and helping organizations mature their cybersecurity programs, we'd love to hear from you.
What You'll Do

Lead the Cyber Asset Attack Surface Management (CAASM) Program
• Serve as the technical lead for the customer's Cyber Asset Attack Surface Management (CAASM) program.
• Improve enterprise-wide visibility across IT, cloud, OT/ICS, IoT, mobile, and remote environments.
• Discover unknown, unmanaged, rogue, orphaned, and high-risk assets while improving enterprise asset inventory accuracy.
• Partner with security teams to strengthen exposure management, reduce cyber risk, and support Zero Trust initiatives.
Administer & Optimize RunZero
• Serve as the organization's primary RunZero Subject Matter Expert.
• Administer, optimize, and continuously improve RunZero organizations, Explorers, RBAC, dashboards, reporting, scan templates, scheduling, tagging strategies, and discovery workflows.
• Monitor platform health, troubleshoot issues, improve discovery accuracy, and maximize enterprise asset visibility.
Integrations & Automation
• Design and maintain integrations between RunZero and enterprise technologies including ServiceNow CMDB, vulnerability management, EDR/XDR, SIEM/SOAR, cloud, and identity platforms.
• Develop automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise workflows to improve reporting, asset intelligence, and operational efficiency.
Customer Consulting & Technical Leadership
• Serve as the embedded technical advisor supporting the customer's Cyber Asset Attack Surface Management strategy.
• Partner with customer stakeholders, deliver technical guidance, develop operational documentation, and provide knowledge transfer that strengthens long-term program maturity.

What Makes You a Great Fit
We're looking for candidates who bring experience in most of the following:
• 5+ years of cybersecurity engineering, Cyber Asset Attack Surface Management (CAASM), cyber asset management, exposure management, vulnerability management, security operations, or technical consulting.
• Hands-on experience administering RunZero or comparable CAASM platforms such as Axonius, Armis, Tenable, Qualys, Rapid7, Tanium, Wiz, or ServiceNow CMDB.
• Strong understanding of enterprise networking concepts and protocols including TCP/IP, DNS, DHCP, SNMP, routing, firewalls, VPNs, and enterprise network discovery.
• Experience building integrations and automation using REST APIs, Python, PowerShell, Bash, JSON, and enterprise platform integrations.
• Experience supporting vulnerability management, asset discovery, exposure management, asset correlation, CVE/CVSS prioritization, and continuous monitoring.
• Strong customer-facing consulting, communication, documentation, and presentation skills with the ability to work independently as an embedded Resident Engineer.
• Active Top Secret / SCI security clearance is required.

Bonus Points If You Have
• Experience supporting Federal Civilian or Department of Defense environments, including RMF, FedRAMP, FISMA, Zero Trust, Continuous Monitoring, Authority to Operate (ATO), or CISA directives.
• Experience with enterprise security technologies such as ServiceNow CMDB/ITOM, Microsoft Defender, CrowdStrike, SentinelOne, Splunk, Microsoft Entra ID, AWS, Azure, or Google Cloud Platform.
• Experience supporting Operational Technology (OT/ICS) environments using technologies such as the Purdue Model, ISA/IEC 62443, NIST 800-82, Modbus, BACnet, DNP3, OPC UA, EtherNet/IP, or Profinet.
• Experience integrating cybersecurity platforms with CMDBs, SIEM/SOAR solutions, identity platforms, cloud environments, or enterprise automation tools.
• Experience leading customer engagements, technical workshops, architecture discussions, or enterprise cybersecurity modernization initiatives.
• Industry certifications such as CISSP, CISM, Security+, CySA+, GCIH, GCIA, GICSP, CCNA, or cloud security certifications.
• Previous experience serving as a Resident Engineer, Technical Consultant, Solutions Engineer, Professional Services Engineer, or Customer Success Engineer within a cybersecurity consulting organization.

What Success Looks Like
In this role, you'll help the customer:
• Improve enterprise-wide cyber asset visibility and inventory accuracy.
• Reduce unknown, unmanaged, rogue, and orphaned assets across the enterprise.
• Strengthen Cyber Asset Attack Surface Management (CAASM) and exposure management capabilities.
• Increase CMDB accuracy through improved asset discovery and correlation.
• Deliver meaningful operational dashboards and executive reporting.
• Improve continuous monitoring, audit readiness, and Zero Trust initiatives.
• Build sustainable operational processes through automation, documentation, and knowledge transfer.
group id: 91102960

Similar Jobs


Job Category
IT - Security
Clearance Level
Top Secret/SCI