Security & Test Automation Engineer
Cyma Systems Inc
Jackson Township, United States of America
yesterday
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Jackson Township, United States of America
Tech stack
Java
API
Amazon Web Services (AWS)
Automation of Tests
Cloud Computing
Cloud Computing Security
Software Debugging
Identity and Access Management
Key Management
Open Web Application Security
PCI Data Security Standards
Role-Based Access Control
Selenium
Test Execution Engine
TypeScript
Software Vulnerability Management
Cloud Platform System
Backend
Playwright
Build Tools
Devsecops
Static Application Security Testing
Dynamic Application Security Testing
Job description
- Security Engineering & Vulnerability Management
- Identify, triage, and remediate vulnerabilities across applications, cloud, and infrastructure
- Integrate security testing into CI/CD pipelines (SAST, DAST, SCA, container scanning)
- Detect and resolve cloud misconfigurations and security risks
- Enforce secure coding practices aligned with OWASP principles (shift-left security)
- Support audit and compliance initiatives (PCI-DSS, internal security reviews)
- Test Automation & Quality Engineering
- Design and maintain scalable automation frameworks for web, API, and backend systems
- Integrate automated testing into CI/CD pipelines for better regression coverage
- Support release validation and production readiness
- Build tools to enhance test execution, reporting, and reliability
- DevSecOps & Platform Security
- Implement secrets management and secure access controls (IAM, least privilege)
- Monitor applications, infrastructure, and pipelines for vulnerabilities
- Drive patching, remediation, and infrastructure hardening
- Collaborate on incident response, debugging, and root cause analysis
Requirements
- Automation Testing
- Security Testing
- Cloud DevSecOps
Core Technical Skills
- Java
- Selenium
- Playwright Automation
- TypeScript
- DevSecOps practices, * PCI-DSS, SOC2, or ISO 27001 compliance experience
- Vault, AWS Secrets Manager
- Cloud security best practices