Sonny's Enterprises Inc. - Conveyorized Car Wash Equipment Leader · 4 days ago
VP - Cyber Security
Sonny's Enterprises Inc. is a leader in conveyorized car wash equipment, and they are seeking a Vice President of Cybersecurity to lead their cybersecurity program. The role involves designing security roadmaps, conducting maturity assessments, and managing external partners to ensure robust cybersecurity across all operations and technologies.
Automotive
Responsibilities
Design and execute a comprehensive cybersecurity strategy and roadmap that addresses both internal IT security and external product/application security
Conduct enterprise-wide maturity assessments using frameworks such as NIST CSF or ISO 27001; maintain a risk register and corrective action plans to close identified gaps
Lead risk management, vulnerability management, incident response, threat intelligence, and security awareness initiatives
Ensure security tools and processes (e.g., vulnerability management, MDR, cloud security, endpoint security) are effectively integrated into IT, engineering, and product workflows
Establish and oversee application security and secure SDLC practices; conduct assessments, baseline maturity, and drive remediation plans for external-facing technologies and software development processes
Manage and hold accountable external cybersecurity partners (MDR, CNAPP, MSSP) and ensure findings are prioritized and remediated on time
Build and manage a third-party risk management program, including vendor security assessments and ongoing monitoring
Ensure data classification, retention, and privacy controls meet regulatory and customer requirements
Oversee security audits and ensure compliance with industry frameworks and regulatory requirements (e.g., NIST, ISO 27001, SOC2, data privacy laws)
Represent the company’s cybersecurity posture during customer security reviews, RFPs, and contractual assessments, building confidence and trust in company practices
Define and track cybersecurity KPIs and KRIs to measure posture and drive continuous improvement; provide periodic updates to senior leadership on posture and risks
Foster a security-minded culture and develop internal capability (directly and through external partners) to meet evolving threats
Perform other duties as required to support the cybersecurity mission and enterprise objectives
Qualification
Required
Bachelor's Degree in Information Security, Computer Science, or a related field
10+ years of progressive cybersecurity experience with a strong record of building or significantly maturing security programs
Broad expertise in internal IT security, cloud security (Azure, AWS), vulnerability management, and data protection
Proven track record of leading operations within multi-cloud environments and using security tools for threat detection, monitoring, and response
Track record of conducting enterprise-wide assessments and building corrective action plans using frameworks such as NIST CSF, ISO 27001, or SOC2
Hands-on experience with SIEM, endpoint security, DLP, vulnerability management, and M365 security tools
Experience leading application security and secure SDLC initiatives, including assessing and governing security in software development environments
Ability to engage with engineers and developers on application and product security while also managing operational IT security
Demonstrated strength in representing cybersecurity posture to executives, customers, and auditors
Experience managing outsourced security partners (MDR, CNAPP, MSSP) and coordinating with IT, engineering, product, and business leaders
Ability to cultivate a high-performance team culture, with strong interpersonal skills for cross-functional collaboration
Preferred
Master's degree preferred
CISSP, CISM, or similar certifications strongly preferred
Relevant security certifications (e.g. CISSP, CISM) are strongly preferred
Benefits
100% employer paid medical plan
401(k) match
Additional medical plans
Dental
Vision
Flex spending account
Short-term and long-term disability & life insurance coverage
Company
Sonny's Enterprises Inc. - Conveyorized Car Wash Equipment Leader
With complete tunnel systems in each of the 50 United States and equipment in countries worldwide, Sonny's equipment delivers millions of clean, dry, shiny cars each year, around the globe.
Funding
Current Stage
Late StageTotal Funding
unknownKey Investors
Genstar Capital
2020-08-06Private Equity
Recent News
2025-08-24
2025-08-23
Company data provided by crunchbase