Security Quality Engineer

Great engineers build software.
Great Security Quality Engineers build trust.

Security isn't something you add later. Help build it into every login, every permission and every release.

Every login.

Every permission.

Every release.

Your work helps protect how customers securely access Bigbank every day.

As a Security Quality Engineer, you'll help build quality and security into every stage of software development. Working alongside Software Engineers from the very beginning, you'll ensure that authentication, authorization and Identity & Access Management (IAM) solutions are secure, reliable and built to scale.

By combining automation, security testing and continuous improvement, you'll help engineering teams deliver software with confidence - while keeping customer identities and access protected.

If you're excited by software quality, modern engineering practices and application security, we'd love to meet you.

Join us to build the best universal bank!

Bigbank is an Estonian bank with a strong international presence, operating across nine markets. We are expanding beyond lending into everyday banking, with the ambition to become a leading universal bank in our region.

What makes this journey unique is the opportunity to build core banking services from the ground up using modern technologies and a next-generation platform - without the constraints of legacy systems.

You'll join a cross-functional engineering team where quality, automation and security are treated as fundamental parts of software development - not something added at the end.

Why you'll enjoy working here

At Bigbank, Quality Engineers are engineering partners - not gatekeepers.

You'll work alongside experienced engineers on a modern banking platform where quality, security and automation are built into every stage of software development. You'll have the opportunity to influence engineering practices and help build services trusted by hundreds of thousands of customers.

How do you create value?

You help engineering teams build secure software from day one.

Your work identifies quality and security risks before they reach production, improves automated quality controls and helps ensure customers can trust every authentication, every permission and every release.

In this role you will:

  • Design and execute functional, non-functional and security testing.

  • Validate authentication, authorization and Identity & Access Management (IAM) workflows.

  • Perform vulnerability assessments and identify security risks before they reach production.

  • Build, maintain and improve automated tests and quality gates within CI/CD pipelines.

  • Define test strategies and quality validation approaches for new features.

  • Analyse defects, investigate root causes and drive continuous improvement.

  • Collaborate closely with Software Engineers throughout the software development lifecycle.

  • Contribute to improving quality engineering practices, automation and testing standards across the team.

Our expectations for you:

We believe you'll succeed in this role if you have:

  • Experience with security testing and identifying software vulnerabilities.

  • Experience testing authentication, authorization or Identity & Access Management (IAM) solutions.

  • Experience with test automation and/or software development.

  • Experience working with CI/CD pipelines and automated quality gates.

  • Experience in software testing and quality engineering.

  • Good understanding of cybersecurity principles and secure software development.

  • Good understanding of REST APIs, microservices and distributed systems.

  • Good SQL skills and familiarity with Unix/Linux environments.

  • Strong analytical, troubleshooting and communication skills.

  • Good English language skills.

You'll stand out if you also have experience with:

  • Identity & Access Management (IAM) platforms.

  • OAuth 2.0, OpenID Connect, SAML or LDAP.

  • Security testing tools such as Burp Suite or OWASP ZAP.

  • OWASP Top 10 and common web application security risks.

  • Secure Software Development Lifecycle (SSDLC), threat modelling or security risk assessments.

  • Contributing to software development using Java, JavaScript or TypeScript.

What success looks like

The team builds and releases software with confidence because quality and security are embedded throughout the development lifecycle.

Quality and security risks are identified early, automated testing provides fast and reliable feedback, and Identity & and Access Management (IAM) solutions are delivered securely, reliably and as intended.

As a result, engineering teams release secure software with greater confidence - and customers benefit from banking services they can trust.

Job ad image
Job ad image

Sounds interesting? Apply now!

Quote author photo

Need more information?

Our HR Partner will answer your questions

Please submit your application only via the application link provided in this job advertisement. This helps us ensure secure processing of personal data in accordance with GDPR and a fair recruitment process for all candidates. Unfortunately, applications submitted by email cannot be considered.

signe.virolainen@bigbank.ee

Stay up to date with our latest news and job offers