Job Closed
This listing is no longer active.
Life is simple when pay is simple
QA Engineer
Location
United States
Posted
83 days ago
Salary
$65K - $95K / year
Seniority
Mid Level
Job Description
QA Engineer
Clair
• Be engaged in the manual testing efforts in each sprint • Contribute to Clair’s test automation suite • Actively document new findings, bugs, and edge cases within the user flows • Produce a daily test report at the end of each day • Collaborate with various teams - Development, Design, Product, Data, and more - to gather and confirm requirements, functional design, and internal design specifications • Partner with developers and support teams to resolve defects and environment issues • Write and execute test cases using the STLC with solid knowledge of all phases of SDLC • Execute end-to-end testing of the application, and interpret test data and results • Assist the support team with issue investigation to identify platform issues and provide a plan of action to resolve them • Attend daily standups with the product development team, participate in planning meetings, and provide documentation as needed on specific elements
Job Requirements
- Previous testing experience is preferred, but experience in a startup environment, relevant industry can fit, and some experience with development can suffice
- Team-oriented person who is very organized and dedicated to being hands-on with the Clair experience
- Experience in the Software Testing domain including testing, project planning, and estimation for mobile and web applications
- Knowledge of QA methodologies, tools, procedures, and testing techniques
- Experience working in agile software development groups
- Experience with Appium Studio, Xcode, Android Studio, Selenium, Postman
- Demonstrate high quality and effective communication skills
- Programming experience with PHP/Laravel, JavaScript, SQL
Benefits
- Medical, Dental, & Vision Coverage, with option to extend to your family
- Fully-paid parental leave
- Company-sponsored 401k, HSA, and FSA
- Unlimited vacation for salaried roles, generous PTO for hourly roles
- Work from home setup allowance
- Access to your earnings every day on Clair
- Company-sponsored short-term and long-term disability insurance
Related Guides
Related Categories
Related Job Pages
More QA Engineer Jobs
• Validate the final package resulting from the integration of two or more Sprint products; • Support version acceptance (release validation); • Ensure system processes remain operational in internal environments; • Support the active system acceptance (HMP) team; • Support the development team by taking on work items for development in each Sprint; • Support development-related activities, with emphasis on verification and validation of the user stories built during sprints — software testing; • Manage your own work and promptly notify the team of any delays.
• Test functionalities in REST APIs, web frontend, and automated credit engine flows • Create and maintain test cases for complex business rules: scoring, credit pipelines, automations, and integrations with external bureaus • Execute functional, regression, and smoke tests for each release — with authority to block deployments when necessary • Participate in decomposing requirements with the team, collaborating from task refinement so acceptance criteria are verifiable • Document bugs clearly enough for the developer to reproduce without back-and-forth (steps, environment, evidence, expected vs. actual behavior) • Support building test automation as the product matures (not required initially, but valued)
• Analyze system requirements and develop test cases to validate them; • Plan and develop acceptance, integration, and system tests; • Document the system and detail the specifications; • Assess infrastructure and design stress, load, and maintainability tests for the system; • Automate integration and acceptance tests; • Manage the test environment and ensure execution of automated tests; • Perform manual and exploratory testing; • Promote a quality culture and identify improvements in the development process; • Work closely with developers, Design, and Product teams on product definition (requirements, features, and delivery) and its continuous improvement;
IoT / ICS / OT Penetration Tester
Finite StateFinite State is a computer and network security company that is on a mission “to protect the devices that power our modern lives.” The company strives to foster an empathetic,
Role Description Finite State is seeking an experienced IoT / ICS / OT and Penetration Tester to join our growing Services team. In this role you will conduct hands-on security assessments of connected devices, embedded systems, industrial control systems, and automotive platforms on behalf of our customers. You will combine deep hardware and firmware expertise with a consultative mindset to deliver clear, actionable findings that help manufacturers and operators understand and reduce risk. Responsibilities - Plan and execute penetration tests and security assessments against IoT, ICS/OT, and automotive targets, including connected consumer devices, industrial controllers, and automotive ECUs and telematics units. - Perform hardware interaction and firmware extraction using techniques such as JTAG, SWD, UART, SPI, I2C, eMMC, and NAND flash dumping; solder and rework PCBs as needed to gain access to debug interfaces. - Conduct firmware reverse engineering using tools such as Ghidra and Binary Ninja to identify vulnerabilities including memory corruption, authentication bypasses, hard-coded credentials, and insecure update mechanisms. - Assess wireless protocols common in IoT and automotive environments, including Bluetooth / BLE, Zigbee, Z-Wave, Wi-Fi, Cellular (LTE/5G), CAN bus, LIN, and automotive Ethernet. - Perform source code review, primarily in C, C++, and related embedded languages, to identify security weaknesses in firmware and embedded software. - Conduct supply chain and software composition analysis, including SBOM review and analysis of third-party open-source components, to identify known vulnerabilities and license risks. - Evaluate customer products and programs for compliance with relevant regulations and standards, including EN 303 645, the EU Cyber Resilience Act (CRA), EU Radio Equipment Directive (CE RED), UNECE WP.29 / ISO 21434 for automotive, and the US IoT Cyber Trust Mark. - Produce high-quality written reports that clearly communicate technical findings, risk ratings, and remediation guidance to both technical and executive audiences. - Leverage AI-powered security tooling and LLM-assisted workflows to accelerate analysis, triage, and reporting; maintain awareness of evolving AI capabilities relevant to embedded security research. - Collaborate with the product, engineering, and research teams to feed pentesting findings back into the Finite State platform and improve detection capabilities. - Support customer-facing engagements including scoping calls, technical debriefs, and remediation follow-up. - Contribute to internal knowledge sharing, tooling development, and methodology improvement. - Participate in industry conferences, publish research, and represent Finite State externally as opportunities arise. Qualifications - Bachelor's degree in Computer Science, Electrical Engineering, Computer Engineering, or a related field. - 5+ years of hands-on experience in IoT, embedded, ICS/OT, or automotive security. - Demonstrated experience performing hardware-level security assessments: JTAG/SWD debugging, SPI/I2C/UART communication, flash memory extraction, and PCB soldering and rework. - Proficiency with firmware reverse engineering tools, specifically Ghidra and/or Binary Ninja; ability to analyze ARM, MIPS, PPC, x86, and x64 architectures. - Experience testing IoT and automotive wireless protocols, including BLE, Zigbee, Z-Wave, Wi-Fi, CAN bus, and cellular interfaces. - Ability to read and review source code in C and C++ to identify memory safety issues, authentication flaws, and other security weaknesses in embedded software. - Familiarity with SBOM concepts, formats (CycloneDX, SPDX), and the use of SBOMs in vulnerability management. - Working knowledge of relevant regulations and standards, including at least a subset of: EU CRA, CE RED / EN 303 645, UNECE WP.29, ISO 21434, or the US IoT Cyber Trust Mark. - Excellent written and verbal communication skills; proven ability to write clear, well-structured technical reports and present findings to diverse audiences. - Experience with scripting and automation using Python and Bash to support tooling and workflow efficiency. - Familiarity with AI-assisted security tooling and an interest in applying LLM-based workflows to accelerate security analysis and reporting. Preferred Qualifications - Hands-on automotive security experience: OBD-II assessment, ECU flashing and analysis, V2X protocols, or automotive HSM evaluation. - Experience with industrial control system (ICS/SCADA) security assessments and familiarity with protocols such as Modbus, DNP3, EtherNet/IP, or OPC-UA. - CVE or responsible disclosure history demonstrating original vulnerability research in embedded or IoT targets. - Relevant certifications such as OSCP, GPEN, GICSP, or vendor-specific automotive security credentials. - Familiarity with static and dynamic analysis platforms and SAST/DAST tooling in the context of firmware and embedded software. - Experience with ML-based vulnerability detection models or AI-augmented reverse engineering pipelines. - Experience working on small, fast-moving consulting or product security teams. - Comfort operating in AWS or similar cloud environments used to support analysis pipelines or customer deliverables. Benefits - Be part of building the leading platform for connected device cybersecurity. - Join a fast-moving team that values transparency, innovation and impact. - Work fully remotely with a high degree of autonomy and ownership. - Comprehensive benefits. - Investment: learning stipends to support your professional development. - Equity: share in our growth and success. - Help solve some of the most pressing cybersecurity challenges facing connected device manufacturers and the millions of people who depend on them.




