QA Engineer with Security Testing
Kurzfassung
QA Engineer with Security Testing in Wrocław. Build and secure enterprise AI platforms. Responsibilities include functional and security testing, API security, automation, and threat modeling. Requires 3+ years QA/security testing experience, Python, pytest, and API security knowledge.
Schlüsselwörter
Von KI erstellte Kurzfassung des Anzeigentextes.
Technology stack
- Python, pytest, AWS, REST APIs, JWT, OAuth, Cedar, CloudWatch, AI Agent Frameworks
- Project overview
- The project focuses on building and securing an enterprise AI platform that enables agent interactions, policy based authorization, workflow governance, and auditability. The platform incorporates advanced security controls, testing frameworks, and compliance mechanisms to ensure reliable and secure AI operations.
TeamMedium team (10-20 people)
You will work within a cross functional team of QA engineers, security specialists, AI engineers, platform developers, and architects. The team collaborates closely through iterative delivery cycles with a strong focus on quality, security, compliance, and continuous improvement.
Position overviewWe are looking for a QA Engineer with Security Testing experience to support the validation and governance of enterprise AI platforms and agent based solutions. In this role, you will design and execute functional and security test strategies, validate policy enforcement mechanisms, and ensure compliance with security, auditability, and governance requirements across AI driven systems.
Responsibilities
- Design and execute functional and security testing strategies for AI platforms and agent based applications
- Develop and maintain automated security testing frameworks using Python and pytest
- Perform API security testing aligned with OWASP API security best practices
- Validate authorization and policy enforcement mechanisms across agent workflows
- Design and execute tests covering permit and deny logic, policy precedence, parameter level conditions, and enforcement controls
- Verify audit logging capabilities and ensure compliance with governance requirements
- Perform threat modeling and security assessments for AI and agent based systems
- Validate protections against AI specific attack scenarios, including prompt injection and identity spoofing
- Develop and maintain test documentation, test cases, and quality assurance standards
- Collaborate with engineering, architecture, and security teams to identify and resolve vulnerabilities
- Support compliance validation and governance testing activities
- Contribute to continuous improvement of quality and security testing processesRequirements3+ years of experience in quality assurance, security testing, or software testing
- Experience implementing automated security testing frameworks
- Experience with API security testing and OWASP API security principles
- Experience designing functional and security test cases and test strategies
- Strong Python programming skills with experience using pytest
- Knowledge of threat modeling methodologies and security testing practices
- Experience validating authentication, authorization, and policy enforcement controls
- Experience working with enterprise applications and distributed systems
- Strong analytical, troubleshooting, and documentation skills
- Experience collaborating within agile software development environments
- Experience testing AI applications, agent based platforms, or machine learning systems
- Nice to have
- Experience with AWS security testing and cloud security validation
- Experience with Cedar policy testing tools and policy validation frameworks
- Experience with regulatory compliance testing, including GDPR and SOC 2 requirements
- Knowledge of audit, governance, and risk management frameworks
- Experience validating agent to agent communication and authorization controls
- Understanding of AI security risks, including prompt injection attacks and agent identity spoofing
- Experience with CloudWatch and security monitoring solutions
- Provide your feedback on BizChat
- Nice to have
- Experience with multi agent communication security patterns.
Experience performing trust model assessments and gap analysis for agent ecosystems.
Experience with Cedar policy testing tools and policy validation frameworks.
Experience with AWS security testing and cloud security reviews.
Knowledge of AI security risks, including prompt injection, excessive agency, identity spoofing, and tool parameter exposure.
Experience with regulatory compliance validation and governance frameworks.
Understanding of enterprise audit, risk management, and security monitoring practices.
Experience working with large scale AI, cloud, or distributed platform environments.
What We Offer:
Vacation days: Up to 26 business days per year.10 illness/special days off per year (fully paid, no medical papers needed) for all contract types
Health and life insurance (Luxmed)
MyBenefit platform with Multisport option
Internal psychological support service
English language classes from the first working dayAccess to external learning platforms: O’
Reilly, LinkedIn Learning, Udemy, and a wide catalog of diverse internal training
- Flexible workplace: work from the office, from home, or choose a hybrid optionTech Skills Mentoring Program
- Opportunities to develop as a public speaker, mentor, or technical interviewer
- Fully paid idle (bench) when not involved in a project
- Certification reimbursement (AWS, GCP, Microsoft, etc.)
| Veröffentlicht | 2026-09-18 |
| Läuft ab | 2026-10-27 |
| Quelle |
|
Hexjobs App
Auf diese Anzeige zugeschnittene Tools.
Hexjobs App
Auf diese Anzeige zugeschnittene Tools.