Information Security Analyst

Vesync

Tustin (CA)

On-site

USD 108,000 - 132,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical/Dental/Vision insurance for员工和
401K with employer match
Generous PTO
Life Insurance
Disability Insurance
Healthy Living Programs
EAP
Fully stocked kitchen

Job summary

VeSync is seeking an Information Security Analyst to support security controls across on-premise and cloud environments. You will work with senior team members to identify risks, respond to incidents, and ensure regulatory compliance.

The role emphasizes CSF, ISO 27001, and cloud security with hands-on SIEM experience. This on-site position in Tustin, CA offers a comprehensive benefits package and opportunities to grow security maturity.

Qualifications

  • Bachelor's degree in Information Security, Computer Science, or related field.
  • 3–6 years of experience in information security or related IT/security role.
  • Hands-on experience with security monitoring, incident response, vulnerability management, or risk assessment.
  • Familiarity with cloud environments (AWS, Azure, or GCP) and basic cloud security concepts.
  • Working knowledge of frameworks and standards such as NIST CSF, ISO 27001, and CIS.
  • Understanding of network security fundamentals and logging.
  • Experience with SIEM or security monitoring tools (Splunk, QRadar, Rapid7, or Wazuh).
  • Hands-on communication and analytical skills.

Responsibilities

  • Support implementation and maintenance of information security controls across on-premise and cloud environments.
  • Analyze business processes and data flows to identify security gaps and improvements.
  • Apply best practices and CSF framework for confidentiality, integrity, and availability.
  • Assist in development and maintenance of information security policies, standards, and procedures.
  • Support compliance efforts with standards and regulations (ISO 27001, NIST, GDPR).
  • Track evidence and controls using compliance/GRC tools (OneTrust, Drata, or similar).
  • Monitor security controls for systems, networks, and cloud platforms (AWS, Azure, GCP).
  • Assist with configuration, monitoring, and tuning of cloud security services.
  • Participate in incident response activities; document incidents and lessons learned.
  • Support identity and access reviews and access control processes.
  • Assist with vulnerability management and risk reporting aligned with frameworks.
  • Deliver security awareness training and phishing simulations; maintain security documentation.

Skills

Security monitoring
Incident response
Vulnerability management
Risk assessment
Cloud security
SIEM
NIST CSF
ISO 27001
CIS

Education

Bachelor's degree in Information Security or related field

Tools

Splunk
QRadar
Rapid7
Wazuh

Job description

The Company:

VeSync is a portfolio company with brands that cover different categories of health & wellness products. We wouldn't be surprised if you have one of our Levoit air purifiers in your living room or a COSORI air fryer whipping up healthy and delicious meals for you every night.

We're a young and energetic company, we've had tremendous success, and we are constantly growing our team. As we garner more industry attention - just check out our accomplishments and awards by CES Innovation, iF Design, IGA, and Red Dot - we also need driven and talented people to join our team.

That brings us to you, and what you'll be joining. Our teams are smart and diligent and take ownership of their work - they're confident in their work but know how to collaborate with open ears and a spirit of learning. If you're down-to-earth, approachable, and easy to strike up a conversation with, this may be a great fit for you.

Check out our brands:

levoit.com | cosori.com | etekcity.com | pawsync.com

The Opportunity:

The Information Security Analyst is responsible for supporting the organization’s security posture by implementing, monitoring, and maintaining security controls across systems, networks, and cloud environments. This role works closely with senior security team members to identify risks, respond to incidents, and ensure compliance with security standards and regulatory requirements.

What you will do at VeSync:
Information Security Operations & Planning
  • Support the implementation and maintenance of information security controls to protect company data and assets across on-premise and cloud environments.
  • Assist in analyzing business processes, systems, and data flows to identify security gaps and improvement opportunities.
  • Apply industry best practices and frameworks such as the NIST Cybersecurity Framework (CSF) to support confidentiality, integrity, and availability of information assets.
Policy Support & Compliance
  • Assist in the development, implementation, and maintenance of information security policies, standards, and procedures.
  • Support compliance efforts with industry standards and regulations (e.g., ISO 27001, NIST, GDPR).
  • Help track evidence and controls using compliance and GRC tools such as OneTrust, Drata, or similar platforms.
  • Monitor regulatory and security trends and elevate relevant changes to senior team members.
System, Network, and Cloud Security
  • Monitor and help maintain security controls for systems, networks, and public cloud platforms (AWS, Azure, GCP).
  • Assist with configuration, monitoring, and tuning of cloud security services and tools.
  • Use security tools and dashboards (e.g., SIEM, security scorecards) to identify potential threats and vulnerabilities.
  • Support AWS security services and baseline configurations.
Security Monitoring & Incident Response
  • Monitor security alerts and events using SIEM and security monitoring tools.
  • Participate in incident response activities, including investigation, containment, remediation, and post-incident analysis.
  • Assist with blue team activities, tabletop exercises, and response drills to improve readiness.
  • Document incidents and lessons learned.
Identity & Access Management
  • Support user access reviews, permission audits, and access control processes.
  • Assist with identity management systems to ensure appropriate authentication and authorization controls.
  • Help identify and remediate excessive or inappropriate access.
Risk Assessment & Vulnerability Management
  • Participate in risk assessments and vulnerability identification efforts.
  • Assist with vulnerability scanning, tracking, and remediation coordination.
  • Support risk documentation and reporting aligned with frameworks such as NIST CSF.
  • Help track and report basic security metrics and KPIs.
Security Awareness & Documentation
  • Support the delivery of security awareness training and phishing simulations.
  • Assist in developing security documentation, including procedures, controls, detection rules, and response playbooks.
  • Maintain clear and accurate security documentation for audits and operational use.
What you bring to the role:
  • Bachelor's degree in Information Security, Computer Science, or a related field (or equivalent experience).
  • 3-6 years of experience in information security or a related IT/security role.
  • Hands-on experience with security monitoring, incident response, vulnerability management, or risk assessment.
  • Familiarity with cloud environments (AWS, Azure, or GCP) and basic cloud security concepts.
  • Working knowledge of security frameworks and standards such as NIST CSF, ISO 27001, and CIS.
  • Understanding of network security fundamentals, including firewalls, IDS/IPS, endpoint protection, and logging.
  • Experience with SIEM or security monitoring tools such as Splunk, QRadar, Rapid7, or Wazuh.
  • Strong analytical, troubleshooting, and communication skills.
Preferred Qualifications
  • Experience supporting compliance or audit activities.
  • Familiarity with GRC or compliance automation tools (OneTrust, Drata, or similar).
  • Relevant security certifications such as Security+, CEH, GSEC, or progress toward CISSP/CISM.
Location:
  • This is an on-site, office-based role in Tustin, CA.
Salary:
  • Starting at $120K Annually
Perks and Benefits:
  • 100% covered Medical/Dental/Vision insurance for employee AND spouse + dependents!
  • 401K with 4% employer match (eligible after 90 days of employment) and immediate 100% vesting
  • Generous PTO policy + paid holidays
  • Life Insurance
  • Voluntary Life Insurance
  • Disability Insurance
  • Critical Illness Coverage
  • Accident Insurance
  • Healthcare FSA
  • Dependent Care FSA
  • Travel Assistance Program
  • Employee Assistance Program (EAP)
  • Fully stocked kitchen
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst
Senior Information Security Analyst

Vesync Co. • Tustin (CA)

On-site
USD 140,000 - 180,000
Medical/Dental/Vision coverage
401K with employer match
Generous PTO
+4
Senior Information Security Analyst
Senior Information Security Analyst

Vesync • Tustin (CA)

On-site
100% covered Medical/Dental/Vision insurance
401K with 4% employer match
Generous PTO policy
+5
Lead IT & Privacy Auditor - U.S. Privacy and Data Security Audit
Lead IT & Privacy Auditor - U.S. Privacy and Data Security Audit

Vesync • Tustin (CA)

On-site
USD 108,000 - 132,000
100% covered Medical/Dental/Vision for
401K with 4% employer match
Generous Sick + Vacation
+6
Senior Product Counsel – Health
Senior Product Counsel – Health

Vesync • Tustin (CA)

On-site
100% covered Medical/Dental/Vision insurance
401K with 4% employer match
Generous PTO policy
+3
Manager of Marketing Analytics and Ops
Manager of Marketing Analytics and Ops

Vesync Co. • Tustin (CA), Northern (KY)

Hybrid
USD 135,000 - 165,000
Medical/Dental/Vision insurance for员工及
401K with 4% employer match
Generous PTO and holidays
+3
Manager of Marketing Analytics and Ops
Manager of Marketing Analytics and Ops

Socket.dev • Tustin (CA)

On-site
USD 150,000 - 173,000
Medical/Dental/Vision insurance for is
401K with employer match
Paid time off
+6
Manager of Marketing Analytics and Ops
Manager of Marketing Analytics and Ops

VeSync • Tustin (CA)

On-site
USD 150,000
100% covered Medical/Dental/Vision ins
401K with 4% employer match
Generous PTO policy + holidays
+10
Senior Product Marketing Manager
Senior Product Marketing Manager

VeSync • Tustin (CA)

On-site
USD 150,000 - 170,000
Medical/Dental/Vision insurance
401K with employer match
Generous PTO
+5
Sr. Product Marketing Manager (Retail)
Sr. Product Marketing Manager (Retail)

Vesync • Tustin (CA)

On-site
USD 148,500 - 181,500
100% covered Medical/Dental/Vision insurance for employee AND spouse + dependents
401K with 4% employer match
Generous PTO policy + paid holidays
+5
Senior UX Researcher
Senior UX Researcher

VeSync • Tustin (CA)

On-site
USD 120,000 - 138,000
100% covered Medical, Dental, and Vision insurance
401K with 4% employer match
Generous PTO policy
+1