Назад
Company hidden
3 дня назад

QA Engineer with Security Testing (AI)

Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Serbia/Ukraine/Poland +7 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
QA Engineer with Security Testing (AI): Designing and executing functional and security testing for enterprise AI platforms and agent-based applications with an accent on automated Python and pytest frameworks, API security, authorization policies, and auditability. Focus on threat modeling, validating prompt-injection and identity-spoofing protections, and testing governance and compliance controls.

Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine

Company

hirify.global delivers technology projects in a supportive, flexible, and innovative environment, including global projects and professional development opportunities.

What you will do

  • Design and execute functional and security testing strategies for enterprise AI platforms and agent-based applications.
  • Develop and maintain automated security testing frameworks using Python and pytest.
  • Perform API security testing according to OWASP API security principles.
  • Validate authentication, authorization, policy enforcement, permit and deny logic, policy precedence, and parameter-level conditions.
  • Verify audit logging, governance, compliance controls, and protections against prompt injection and identity spoofing.
  • Perform threat modeling and security assessments while collaborating with engineering, architecture, and security teams to resolve vulnerabilities.

Requirements

  • 3+ years of experience in quality assurance, security testing, or software testing.
  • Experience implementing automated security testing frameworks and designing functional and security test strategies.
  • Experience with API security testing and OWASP API security principles.
  • Strong Python programming skills with experience using pytest.
  • Knowledge of threat modeling, authentication, authorization, and policy enforcement controls.
  • Experience with enterprise applications, distributed systems, agile development environments, analytical troubleshooting, and technical documentation.

Nice to have

  • AWS security testing and cloud security validation experience.
  • Experience with Cedar policy testing, CloudWatch, and security monitoring solutions.
  • Experience testing AI applications, agent-based platforms, or machine learning systems.
  • Knowledge of GDPR, SOC 2, audit, governance, and risk management frameworks.
  • Experience validating agent-to-agent communication and authorization controls, including prompt-injection and agent identity-spoofing risks.

Culture & Benefits

  • Vacation according to the laws of the employee’s country.
  • Health insurance support for employees and their loved ones.
  • Ten sick-pay days without a doctor’s note, followed by the applicable local legal rules.
  • Time off for state holidays according to the official calendar.
  • IT certification cost coverage and access to courses and learning platforms.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →