This is a remote position.
Role Summary:
Client is seeking a QA Engineer with a strong background in security testing, specializing in permissions and access control validation. This role will focus on ensuring that our systems enforce correct user roles, access boundaries, and workflow rules across both low-code/no-code platforms and custom-built solutions. Additionally, this role will collaborate closely with business stakeholders, engineering teams, and information security to design, execute, and automate test plans that protect our applications from security and compliance risks.
Responsibilities
· Develop, maintain, and execute test plans for access control, permissions, and workflow security.
· Partner with Infosec, Product, and Engineering teams to define security testing requirements and acceptance criteria.
· Perform manual and automated security testing of role-based access controls, authentication
flows, and authorization rules.
· Validate workflow-driven applications and low/no-code systems for correctness, escalation rules and data leakage prevention.
· Build and maintain automated test suites using tools like Testim.io (or similar frameworks).
· Identify gaps in access policies, privilege escalation risks, and workflow misconfigurations.
· Document test cases, defects, and results clearly for both technical and business audiences.
· Advocate for secure development and testing practices within the engineering lifecycle.
Qualifications:
·4+ years of experience in QA engineering, with a focus on security testing.
· Strong understanding of permissions models, RBAC/ABAC, and access control testing.
· Experience working with workflow automation, BPM, or low/no-code platforms (e.g., Appian,
Salesforce, PowerApps).
· Ability to collaborate with business teams, engineers, and security experts to translate
requirements into effective tests.
· Hands-on experience with test automation tools (preferred: Testim.io, Selenium, Cypress,
Playwright).
· Familiarity with CI/CD pipelines and integrating automated security/QA tests.
· Strong problem-solving skills, attention to detail, and ability to work independently.
Preferred Experience:
· Experience with threat modeling or penetration testing.
· Knowledge of OWASP Top 10 security risks.
· Exposure to compliance frameworks (SOC2, ISO27001, GDPR, etc.).
· Programming or scripting background (JavaScript, Python, Java)
...teaching and working at KIPP! Job Description The School Social Worker ensures every KIPP student has equitable access to learning... ...lbs occasionally Work Environment Duties may require traveling to other school facilities using employee's personal...
...Aerospace Engineer / Weaponeer - SME Are you passionate about supporting the development of software thatmakes a real differencelike supporting mission-critical operations for our warfighters? Do you enjoy working with emerging technologies and being part of a collaborative...
...Client Support Associate (CSA) Wellness Clinic Front Desk - Weekends About Us: We are IV Nutrition , a wellness clinic helping... ...with basic cleaning and restocking tasks. You enjoy working in a team that cares about its clients and each other. What...
...Employee ClassAcad Prof and Admin Add to Favorite Jobs Email this Job About the Job This is a short-term and/or temporary online Political Science teaching position for the University of Minnesota - Crookston Campus's Humanities, Social Science, and Education Department...
**Company** Horizon Air**The Team**As a Horizon Air flight attendant, you'll fly regionally throughout the West, creating signature inflight experiences can make for a fun and challenging career. Our flight attendants always keep safety as their number-one priority and...