Qa Security Testing
Core
QA Engineer specializing in validating web and API vulnerabilities for a cloud-based security testing product.
Role type
QA Security Testing Engineer
Builds
Cloud-based security testing product
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features
Required skills
Application security fundamentals, Web vulnerability analysis (SQLi, XSS, CSRF, SSRF), OWASP Top 10 knowledge, Vulnerability scanning tools (Burp Suite, Nmap, OWASP ZAP), Linux command-line, Python scripting, Test case design and execution, Regression and stress testing, Debugging and issue resolution
Preferred skills
Network protocols knowledge, API and database familiarity, Automated security testing (DAST), CI/CD and DevSecOps practices
Technologies
Burp Suite, Nmap, OWASP ZAP, Python, Linux
Responsibilities
Design and maintain test cases for web and API security features, Validate vulnerability findings and identify false positives/negatives, Perform functional, negative, regression, and stress testing, Analyze results and collaborate with developers on resolutions, Create test environments simulating attack scenarios, Support automated DAST workflows, Document test cases and security validation reports
Seniority
Mid-level, hands-on IC