31 Aug
|
One Counsel
|
Hyderabad
31 Aug
One Counsel
Hyderabad
Automation & Manual Test Engineer Location: OneCounsel | Type: Full-time | Onsite/Hybrid
OneCounsel is building an AI-native legal practice management platform for personal injury law firms in the United States. Think 'TurboTax for PI Law' — combining AI-powered document extraction, intelligent case valuation, prescriptive workflows, and conversational AI agents to transform how attorneys manage cases from first contact through settlement.
We're looking for an Automation & Manual Test Engineer who takes quality personally. On a HIPAA-regulated, SOC 2-audited platform, a missed bug is not just a regression — it is a compliance event, a malpractice risk, or a data breach.
Own the end-to-end quality bar — from reviewing tickets in sprint planning to signing off on production deployments
Build a test automation suite across the full stack: pytest (backend), Vitest + React Testing Library (frontend), Playwright (E2E), k6 (load)
Catch authorization bypasses, PHI leaks, multi-tenant data exposure, and financial miscalculations before they reach attorneys
Shape the testing strategy for AI agent outputs, streaming UIs, and event-driven pipelines — territory most QA playbooks have never visited
Manual & Exploratory Testing
Execute structured test cases and exploratory sessions across case management, intake wizard, evidence upload, party management, financial/lien ledger, and template letter generation
Validate PHI handling: confirm sensitive fields are masked in event payloads, PDFs, and API responses in line with HIPAA requirements
Perform regression testing on every sprint release and maintain a living regression checklist tied to CI gates
Test responsive behaviour across desktop and tablet breakpoints in the Nordic design system (Next.js 15 / shadcn/ui / Tailwind v4)
Test Automation — Frontend
Write and maintain Vitest + React Testing Library unit tests for hooks, utility functions, Zod schemas, and UI components targeting 80% statement/function coverage
Use Mock Service Worker (MSW) to mock API responses in component tests — keep tests deterministic and fast without hitting the network
Assert that loading skeletons, error boundaries, empty states, and toast notifications fire correctly under simulated latency and error conditions
Test Automation — Backend
Write pytest unit tests for FastAPI routers and service classes covering success paths, validation errors, 4xx/5xx responses, and @require_permission decorator enforcement
Write integration tests that hit the real Aurora PostgreSQL database (via SSM tunnel) to verify Row-Level Security policies, enum constraints, cascading deletes, and cross-tenant data isolation
Test EventBridge event publishing: verify CaseCreated and PhaseChanged events carry the correct payload shape with PHI fields masked
Assert response envelope format ('data': ..., 'Run mutation testing (mutmut) on intake scoring and gate logic to verify tests actually catch injected bugs, not just execute lines
Performance & Load Testing
Identify database N+1 patterns, slow queries, and Redis cache miss rates from CloudWatch metrics during load runs
CI/CD & Quality Gates
Own the CI coverage gate: enforce 80/70/80 thresholds in GitHub Actions for the web build and 75%+ for the API build
Participate in sprint planning and story reviews to catch untestable designs early; 2–5 years of software testing experience, including both manual testing and test automation
~ Hands-on experience writing automated tests in Python (pytest) and/or JavaScript/TypeScript (Jest, Vitest, or equivalent)
~ Experience with Playwright, Cypress, or Selenium for end-to-end browser testing
~ Solid understanding of REST API testing — comfortable using Postman, curl, or code-based clients to validate response shapes, status codes, and error formats
~ Familiarity with SQL — able to write queries to verify database state, check constraint violations, and trace data through service layers
~ Experience with version control (Git) and CI/CD pipelines — able to read a failing GitHub Actions job and trace it to the root cause
~ Experience testing HIPAA-regulated, SOC 2, or other compliance-heavy SaaS products — understanding of PHI, audit logging, and data residency requirements
Familiarity with React Testing Library and Mock Service Worker (MSW)
for component-level testing in React/Next.js applications
Experience with performance and load testing tools (k6, Locust, JMeter, or equivalent)
Familiarity with mutation testing tools (mutmut for Python, Stryker for TypeScript) to measure test effectiveness beyond coverage percentages
Basic AWS knowledge — able to read CloudWatch logs, trace a request through ALB access logs, and understand ECS task failures
Experience testing AI-generated outputs or LLM-based features — able to design assertions for non-deterministic, streaming, or structured AI responses
Familiarity with legal-tech, health-tech, or financial SaaS domain requirements
Risk-driven — you prioritise tests by consequence (a PHI leak outweighs a label truncation), not by coverage delta
Adversarial — you think like a curious attacker when probing authorization and data isolation boundaries
Preventive — you catch ambiguous requirements in sprint planning, not in the regression cycle
you make quality a shared value, not a gate
Frontend: Next.js 15 (App Router), TypeScript, Tailwind v4, shadcn/ui, TanStack Query, Zustand, Framer Motion
Backend: FastAPI (Python 3.12+), SQLAlchemy 2.0 async, Alembic, Pydantic v2
Amazon Cognito, JWT middleware, Cedar/Amazon Verified Permissions (ABAC)
Database: Aurora PostgreSQL 16 (Serverless v2, RLS), Redis 7.1 (ElastiCache)
AI & Agents: AWS: ECS Fargate, ALB, EventBridge, SQS, Step Functions, Textract, SES, S3, CloudFront, CloudWatch
Testing: pytest, Vitest, React Testing Library, Playwright, k6, mutmut, Stryker, MSW
Terraform, GitHub Actions, Turborepo, pnpm workspaces, Docker
Own quality end-to-end — you set the bar, not just tick boxes; build the automation suite from scratch on a greenfield codebase
Novel testing territory — AI agent outputs, streaming UIs, event-driven pipelines, and compliance-heavy data flows that most QA playbooks have not mapped
Modern, well-architected codebase — opinionated design system, strong typing, CI gates, and clean conventions
Hybrid/flexible work from Hyderabad with async collaboration with the US-based founder
Equity participation in a quick-growing legal-tech company
Continuous learning — cutting-edge LLMs, agent frameworks, and AWS-native architectures
📌 Quality Assurance (QA) Automation Engineer (Hyderabad)
🏢 One Counsel
📍 Hyderabad