C2 Labs
About Us:
Do you want to make a difference? Do you want to join a team that helps federal and commercial customers modernize how they operate? C2 Labs is always looking to enhance its staff with professional, talented individuals.
Culture
C2's success is driven by putting people first and holding ourselves to a high standard of ownership and results. We treat everyone on our team with respect, and we work hard to ensure everyone's success by providing leadership, training, mentorship, and development opportunities. Our competitive benefits and culture of integrity, professionalism, and excellence attracts top talent in the industry.
Missions
C2 Labs helps federal and commercial customers connect their systems, strengthen their cybersecurity and compliance posture, and automate their delivery workflows — turning technology investments into measurable, governed results. We support the mission of our customers through trusted partnerships and by creating tailored solutions that meet their needs and overcome the challenges created by the ever-evolving technology landscape.
About the role:
C2 Labs is seeking a Solutions Advisor with experience to help federal and commercial customers implement, configure, adopt, and optimize the RegScale platform. This role combines hands-on RegScale platform experience with cybersecurity and GRC expertise, customer-facing consulting, and technical problem solving. The Solutions Advisor translates business and compliance requirements into practical RegScale configurations, workflows, evidence structures, reporting, and automation that improve customer outcomes and make compliance programs easier to operate at scale.
The Solutions Advisor serves as a hands-on subject matter expert for customer engagements involving RegScale. The role is accountable for helping customers move from requirements and existing GRC processes into production-ready, maintainable RegScale solutions that improve adoption, compliance visibility, evidence traceability, reporting, and operational efficiency.
Role Purpose
The role exists to ensure customers receive practical, technically sound RegScale implementations that support their security, risk, and compliance objectives. Success means customers reach production readiness faster, understand how to use the platform effectively, digitize manual compliance processes, improve control and evidence traceability, and build sustainable operating practices that continue after implementation. This is a customer-facing delivery role that works closely with C2 delivery leadership, cybersecurity/GRC consultants, customer success resources, engineers, architects, and customer stakeholders.
Key Responsibilities:
- Customer Discovery and Solution Workshops: Lead customer discovery sessions and workshops to identify security, risk, compliance, workflow, reporting, evidence, and automation requirements; convert those requirements into a practical RegScale implementation approach.
- RegScale Configuration and Implementation: Configure and optimize RegScale environments, including frameworks, controls, assessments, evidence structures, risks, findings, POA&Ms, workflows, dashboards, reporting, and other platform capabilities required by the engagement.
- GRC Program Digitization: Help customers transition manual, spreadsheet-based, or fragmented compliance processes into repeatable technology-enabled workflows within RegScale.
- Framework and Control Enablement: Support implementation of frameworks and programs such as FedRAMP, NIST SP 800-53, NIST RMF, CMMC, NIST CSF, ISO 27001, SOC 2, and other customer-specific standards.
- Evidence and Traceability: Establish and maintain clear relationships among controls, requirements, assessments, evidence, findings, remediation activities, validation methods, and continuous monitoring expectations.
- Integrations and Automation: Support requirements definition, configuration, testing, and adoption of integrations between RegScale and customer systems such as Jira, ServiceNow, Azure DevOps, cloud platforms, vulnerability management tools, SIEMs, and other security technologies.
- Customer Training and Enablement: Develop and deliver customer training, platform demonstrations, implementation guidance, and operating procedures that improve adoption and customer self-sufficiency.
- Technical Advisory and Troubleshooting: Provide hands-on guidance for platform configuration, workflows, reporting, data organization, implementation challenges, and operational use cases.
- Cross-Functional Collaboration: Partner with customer cybersecurity, compliance, engineering, architecture, operations, and executive stakeholders to ensure platform configurations accurately represent real-world technical implementations and business requirements.
- Customer Adoption and Optimization: Identify opportunities to increase platform utilization, reduce manual effort, improve reporting, enhance automation, and strengthen long-term GRC operating maturity.
- Solution and Proposal Support: Assist C2 with technical demonstrations, implementation planning, statements of work, RFIs/RFPs, and solution development when RegScale expertise is needed.
- Product Feedback and Continuous Improvement: Capture recurring customer needs, implementation lessons, and platform feedback and communicate them internally to improve C2 delivery methods, reusable accelerators, and customer outcomes.
Required Qualifications:
- 10+ years of progressively responsible experience in cybersecurity, governance, risk, compliance, security consulting, GRC technology implementation, or related work.
- Demonstrated hands-on professional experience with the RegScale platform, including configuration or administration of production or customer environments.
- Experience translating cybersecurity, risk, or compliance requirements into configured technology workflows, controls, assessments, evidence structures, reporting, and operating processes.
- Working knowledge of at least one major cybersecurity or GRC framework, such as NIST SP 800-53, FedRAMP, NIST RMF, CMMC, NIST CSF, ISO 27001, or SOC 2.
- Strong understanding of GRC concepts including control implementation, assessments, evidence, audit readiness, findings, risk, remediation, POA&Ms, and continuous monitoring.
- Experience working directly with customers, system owners, compliance teams, engineers, architects, and executive stakeholders.
- Ability to explain complex cybersecurity, compliance, and technical concepts clearly to both technical and nontechnical audiences.
- Strong written communication, documentation, analytical, facilitation, and problem-solving skills.
- Familiarity with SaaS products, cloud-based technologies, and modern delivery environments.
- Ability to travel as required and to meet applicable customer background, suitability, or security requirements.
Preferred Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, Information Systems, Computer Science, or a related field.
- Advanced RegScale implementation, configuration, administration, or customer enablement experience across multiple customer environments.
- Experience implementing FedRAMP authorization, NIST RMF, ATO, or continuous monitoring processes within RegScale.
- Experience with RegScale automation, APIs, evidence integrations, or workflow integrations.
- Experience integrating RegScale with Jira, ServiceNow, Azure DevOps, AWS, Microsoft Azure, vulnerability management platforms, SIEMs, or related security tooling.
- Cybersecurity or GRC certifications such as CISSP, CISM, CRISC, CGRC, CISA, CCSP, Security+, or comparable credentials.
- Experience in cybersecurity/GRC SaaS professional services, customer success, technical account management, or solution consulting.
- Experience developing implementation playbooks, training programs, customer-facing technical documentation, or reusable solution accelerators.
Additional Competencies:
- Extreme Ownership
- Initiative
- Growth Mindset
- Time Management
- Decision Making
- Critical Thinking
- Communication Proficiency
- Organization Skills
- Technical Fluency
- Customer Orientation
- Results Orientation
- AI & Automation Fluency
- Adaptability & Resilience
- Applies AI tools to streamline workflows, enhance decision-making, and improve outcomes.
- Understands the strengths and limitations of AI systems and exercises sound judgment in their use.
- Continuously explores new AI capabilities and integrates them into day-to-day work where appropriate.
- Uses AI in alignment with company and customer-specific policies, data privacy standards, and ethical guidelines.
- Exercises discretion when using AI with sensitive or proprietary information.
- Demonstrates awareness of bias, accuracy, and risk considerations when leveraging AI tools.
Company Benefits/Perks:
- Medical
- HSA + HRA
- Telemedicine
- Dental Benefits
- Vision Benefits
- Basic and Voluntary Life and AD&D
- Disability Products
- Employee Assistance Program
- 401(K) Retirement Plan
- Commuter Benefits
- Financial Advisor
- Tuition Assistance
EEO Statement:
All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, national origin, age, disability, or protected veteran status. C2 Labs takes affirmative action in support of its policy to and advance in employment individuals who are minorities, women, protected veterans, and individuals with disabilities.
C2 Labs maintains a drug-free workplace. All offers of employment will be contingent on applicant passing a pre-employment drug screen.