Overview:
Sonny's Enterprises is the world's largest manufacturer of conveyorized car wash equipment, parts, and supplies. We are the industry leader, recognized and awarded by the International Car Wash Association for innovating new technologies to advance the industry with products proudly designed and built in the USA. Our culture thrives on finding new and better ways to accelerate what's next. We embrace change and the opportunity it produces to maximize the potential of our most valuable resource -- our PEOPLE! We invite you to explore our opportunities and grow your career with us.
We offer 100% employer paid medical plan. Other optional benefit programs are available to our employees and their families which include: 401(k) match, additional medical plans, dental, vision, flex spending account, short-term and long-term disability & life insurance coverage.
The Vice President of Cybersecurity will lead the company's cybersecurity program, with full responsibility for protecting both internal operations and customer-facing external technologies. This job is ideal for a hands on builder/leader that will design the security roadmap, conduct maturity assessments, and strengthen security across all domains, including application security and secure SDLC, while driving corrective action plans to close gaps. They will work closely with technology, product, and operational teams, oversee external partners, and represent the company credibly with customers, partners, and auditors. The VP will also provide periodic updates to senior leadership on security posture, risks, and the progress of major initiatives.
Responsibilities:
Design and execute a comprehensive cybersecurity strategy and roadmap that addresses both internal IT security and external product/application security.
Conduct enterprise-wide maturity assessments using frameworks such as NIST CSF or ISO 27001; maintain a risk register and corrective action plans to close identified gaps.
Lead risk management, vulnerability management, incident response, threat intelligence, and security awareness initiatives.
Ensure security tools and processes (e.g., vulnerability management, MDR, cloud security, endpoint security) are effectively integrated into IT, engineering, and product workflows.
Establish and oversee application security and secure SDLC practices; conduct assessments, baseline maturity, and drive remediation plans for external-facing technologies and software development processes.
Manage and hold accountable external cybersecurity partners (MDR, CNAPP, MSSP) and ensure findings are prioritized and remediated on time.
Build and manage a third-party risk management program, including vendor security assessments and ongoing monitoring.
Ensure data classification, retention, and privacy controls meet regulatory and customer requirements.
Oversee security audits and ensure compliance with industry frameworks and regulatory requirements (e.g., NIST, ISO 27001, SOC2, data privacy laws).
Represent the company's cybersecurity posture during customer security reviews, RFPs, and contractual assessments, building confidence and trust in company practices.
Define and track cybersecurity KPIs and KRIs to measure posture and drive continuous improvement; provide periodic updates to senior leadership on posture and risks.
Foster a security-minded culture and develop internal capability (directly and through external partners) to meet evolving threats.
Perform other duties as required to support the cybersecurity mission and enterprise objectives.
Research Skills, Analyzing Information, Attention to Detail, Deadline-Oriented, Confidentiality, Thoroughness, Corporate Finance, Financial Software.
MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.