2 дня назад
Senior SDET, API / Security
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior SDET, API / Security (REST, GraphQL, Security Testing): Building scalable automated test frameworks and tooling for RESTful and GraphQL APIs, SDKs, and automation workflows with an accent on API reliability, secure access patterns, and vulnerability detection. Focus on designing authentication and authorization validation, integrating security suites into CI/CD pipelines, and testing distributed microservice systems for regressions and backward compatibility.
Location: Remote, United States; hybrid schedule available for candidates based in El Dorado Hills, California.
Company
develops cybersecurity software and a zero-knowledge, zero-trust platform for protecting passwords, passkeys, infrastructure secrets, remote connections, endpoints, and privileged access.
What you will do
- Lead the design, architecture, and implementation of scalable automated test frameworks for RESTful and GraphQL APIs across distributed and microservice-based systems.
- Define API validation strategies covering authentication, authorization, rate limiting, error handling, contract adherence, and backward compatibility.
- Conduct security testing including token validation, input fuzzing, access-control verification, and vulnerability testing.
- Integrate API and security test suites into GitHub Actions CI/CD pipelines across staging and production-like environments.
- Test secure integrations with third-party services and identity providers, and analyze failures and production incidents to improve coverage.
- Mentor automation engineers and contribute to automation architecture and roadmap planning.
Requirements
- 5+ years of QA automation experience with a strong focus on API testing.
- Proficiency with Postman, REST Assured, or similar API testing frameworks.
- Experience scripting in Python or JavaScript and developing automated tests with Pytest.
- Knowledge of OAuth2, JWT, API keys, HTTP, JSON, common API protocols, and OWASP API Top 10 vulnerabilities.
- Experience integrating automated tests into GitHub Actions CI/CD pipelines.
- Strong communication and collaboration skills.
Nice to have
- Experience with Jest, Burp Suite, or OWASP ZAP.
- Knowledge of ECC and RSA encryption.
- Exposure to SOC 2, ISO 27001, or FedRAMP compliance frameworks.
- Familiarity with AWS API Gateway, Lambda, and Secrets Manager.
- Background in API performance or load testing.
Culture & Benefits
- 100% remote work, with a hybrid option in El Dorado Hills, California.
- Medical, dental, and vision insurance, including domestic partnerships.
- Employer-paid life insurance and supplemental life insurance options.
- Voluntary short- and long-term disability insurance.
- Roth or traditional 401(k) and a generous PTO plan.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
1 день назад
Software Engineer, Test (SDET)
165 000 - 205 000$
4 дня назад
Staff QA Engineer (Embedded Systems)
18 часов назад
QA Automation Engineer (AI)
100 000 - 130 000$
2 дня назад
Software Development Engineer In Test (Fintech)
Injective
1 день назад
QA Engineer (Web3)
3 дня назад