General QA Engineer Manual + Automation 1 Year Experience - Upwind Security
Why this role is worth your next few years
Most QA jobs teach you one product and one process. You learn the checklist, and two years later the checklist is still all you know.
This one is different. You'll work across cloud security on AWS, Azure and GCP โ deploying Kubernetes clusters, running infrastructure-as-code, testing threat detection, and writing the Java automation that holds it together. That isn't one skill. It's the stack the entire market is hiring for, learned properly, alongside people who will actually teach you.
You'll start with support and a defined feature area. Within a few months you'll be running that area yourself.
What you'll be doing
Testing and test design
- Own test plans for your feature areas โ onboarding flows, dashboards, scanners, integrations โ and turn them into prioritized test cases with real exit criteria
- Run feature QA cycles: validate acceptance criteria against the PRD, verify each requirement, sign off before release
- Run regression sweeps and verify fixes before they move forward
Automation
- Write and maintain WebUI tests in Java + Selenide, extending a framework that's already there โ you're not starting from a blank file, but you will be shaping it
- Automate the areas you test by hand, so your manual time goes to exploratory and new-feature work
- Keep the suite healthy: investigate failures, separate real defects from flakiness, and fix the flaky ones properly
- Start contributing to how we test, not just what we test โ stable selectors, reusable helpers, better test data
Hands-on cloud work
- Set up your own environments: onboard AWS accounts via Terraform and CloudFormation, Azure tenants, GCP projects, and verify off-boarding actually cleans up
- Deploy our sensors on EKS with Helm and on EC2 hosts
- Generate QA workloads and confirm the platform detects and displays them correctly
- Cross-check the UI against the underlying data โ where the most interesting bugs live
Working with people
- Daily contact with backend and frontend engineers, PMs and designers inside your feature squad
- Keep test plans, cases and results documented in Jira and Confluence so anyone can pick up where you left off
What you need to bring
- Commercial QA experience covering both manual and automated testing
- Java โ enough to read, extend and debug an existing test codebase confidently
- Hands-on UI automation you've done on a real project (Selenide, Selenium, or similar โ transferable experience is fine)
- Test design fundamentals, and the judgment to know what not to test
- REST APIs and browser devtools: enough to tell whether a bug is frontend, backend, or data
- Working knowledge of at least one major cloud provider โ console, IAM basics, onboarding flows
- Basic Linux and CLI: SSH, systemctl, reading logs
- Git and Jira
- English for daily work with a distributed team
Nice to have โ not required
Kubernetes basics ยท Terraform or CloudFormation ยท interest in cybersecurity (CVEs, CSPM, IAM) ยท SQL or OpenSearch ยท CI/CD ยท regulated environments like FedRAMP or SOC 2
What actually matters to us
- Curiosity about why something broke. The best bugs on our board come with a diagnosis attached.
- Ownership. You set up your own environments, chase the answer, and follow the fix through to verification.
- Precision in writing. A vague bug report costs the team a day; a good one saves it.
- Willingness to learn fast. You don't need to arrive a cloud security expert. You need to want to become one.
What you get out of it
Real mentorship from engineers who know this domain cold. Depth in cloud security across all three major providers, hands-on Kubernetes and infrastructure-as-code, and a mature Java automation stack.
You'll absorb in months what most people spend years collecting โ and come out the other side as an engineer nobody wants to lose.
Curious? Apply.