Description
Location: Australia (Remote, with occasional client-site or hybrid presence)
Experience: 8β12 years in software testing, including 5+ years building automation from scratch
Engagement: Freelance / Contract / Consultant β full-time or part-time, flexible
Team: Small, senior, product-and-services hybrid.
You will be one of a handful of people, not one of a hundred.
About the roleWe build and migrate enterprise web platforms β Sitecore XP and XM Cloud, Drupal 10/11 β for clients who notice when something breaks.
Right now, quality is owned by the developers who wrote the code.
That has a ceiling, and we have reached it.
We are hiring the person who owns quality end-to-end: the test strategy, the automation framework, the exploratory testing that finds what automation never will, and the conversation with the client about whether we are ready to go live.
"Full stack" here means the whole depth of the system β browser UI, REST and GraphQL APIs, database and content integrity, mobile, performance, accessibility and security.
What you'll actually doOwn quality, and own the client conversationβ Define test strategy per engagement β scope, risk, environments, entry and exit criteria, what we automate and what we deliberately do not
β Present test plans, coverage, and release readiness directly to client stakeholders, often without a PM in the room
β Give an honest go/no-go recommendation and defend it when there is pressure to ship
β Estimate QA effort for proposals and hold the line when scope moves
β Write reports non-technical stakeholders can act on β defect trends, risk areas, coverage gaps
Manual and exploratory testingβ Risk-based exploratory testing on new features, with session notes that stand up to review
β CMS authoring and editorial workflow testing β content modelling, workflow states, personalisation rules, multilingual behaviour, publishing and preview.
Editors are users too, and their experience is routinely untested.
β Migration validation β one of our highest-risk activities.
Content counts and integrity, media and asset fidelity, URL and redirect mapping, metadata and SEO preservation, permissions, taxonomy accuracy.
Build repeatable comparison tooling rather than spot-checking spreadsheets.
β UAT support: prepare scenarios, run sessions with client teams, triage what comes back
β Sharp defect reports β reproducible, with evidence, severity, and business impact
Build and own the automation frameworkβ Design and build automation from scratch: architecture, patterns, data management, environment strategy, reporting
β Rapise 9.0 β scripted and scriptless tests, SmartActions and AI-based visual recovery for resilient locators, image-augmented validation during playback
β Selenium 4.x, Playwright, Cypress, Appium β you should be fluent in code-based automation, not only low-code tooling
β Build for maintainability.
A suite nobody trusts is worse than no suite.
β Set and defend the automation/manual boundary rather than automating everything on principle
Use AI tooling with judgementβ Rapise 9.0 self-healing β SmartActions combining object description with natural-language intent, AI visual recognition to recover from broken locators, multi-level recovery
β Inflectra.ai β text and image queries during execution for visual validation and in-flow decisioning
β BrowserStack AI agents β Low-Code Authoring (natural language and requirements into tests), Self-Healing Agent, Test Case Generator, Test Failure Analysis, Test Deduplication, Visual Review in Percy, and A11y Detection and Remediation
β LLM-assisted test case design, test data generation, and defect triage
β Critically: know the failure modes.
AI-generated test cases drift toward the happy path.
Self-healing can mask a genuine regression by quietly adapting to a bug.
Visual diff filtering can suppress a real change.
We want the productivity, and we want someone who audits it.
Cross-browser, cross-device and mobileβ BrowserStack Live, Automate, App Automate, and Percy across real browser and device matrices
β Define the browser/device matrix from the client's actual analytics, not a generic list
β Responsive and native mobile testing; iOS and Android real-device coverage
β Visual regression testing that flags real breakage without drowning the team in noise
APIs, data and performanceβ REST and GraphQL testing β contract, schema, auth, error handling, edge cases (Postman/Newman, REST Assured, or equivalent)
β Integration testing across CRM, search, commerce, SSO, and third-party services
β Database validation and data integrity checks, particularly post-migration
β Performance and load testing (JMeter, k6) and front-end performance against Core Web Vitals
β Security-adjacent testing: authentication, authorisation, role and permission matrices, input handling
Accessibilityβ WCAG 2.2 AA testing as a delivery standard β a contractual requirement for many of our government, education and nonprofit clients
β Automated scanning (axe, Lighthouse, BrowserStack Accessibility) plus manual keyboard navigation and screen reader testing (NVDA, VoiceOver).
Automated tools catch roughly a third of issues; the rest need a human.
β Produce audit reports and remediation guidance developers can act on
Build the QA practiceThis role is the QA practice, and you are building it.
β Establish standards, templates, and tooling decisions across all engagements
β Set up test management properly β SpiraTest/SpiraPlan, BrowserStack Test Management, or Jira with Xray/Zephyr β and make traceability real rather than decorative
β Integrate testing into CI/CD as enforced quality gates (GitHub Actions, GitLab CI, Azure DevOps, Jenkins)
β Build reusable accelerators β migration validation harnesses, CMS regression packs, accessibility baselines β that shorten every subsequent project
β Turn QA into a service line.
Standalone test automation, accessibility audits, migration assurance, and performance audits are sellable engagements.
Help us scope, price, and pitch them.
β Mentor developers into better testing habits and bring on junior QA as we grow
RequirementsCore testing (mandatory)β 8β12 years in software testing with genuine depth in both manual and automated approaches
β 5+ years building and owning automation frameworks β architecture decisions, not just writing tests in someone else's structure
β Strong test design technique: equivalence partitioning, boundary analysis, decision tables, risk-based prioritisation
β Exploratory and session-based testing you can evidence
β Defect lifecycle management and clear, credible reporting
Toolingβ Rapise β hands-on experience strongly preferred; Rapise 9.0 AI features a clear differentiator.
Deep experience with a comparable tool plus willingness to convert quickly is acceptable.
β BrowserStack β Live, Automate, App Automate, Percy; AI agent features preferred
β Selenium 4.x, Playwright, Cypress, Appium β fluency in at least two
β API testing: Postman/Newman, REST Assured, or equivalent; GraphQL testing
β Performance: JMeter, k6, or equivalent
β Accessibility: axe, Lighthouse, WAVE, plus real screen reader use
β Test management: SpiraTest/SpiraPlan, Xray, Zephyr, TestRail, or BrowserStack Test Management
Technicalβ Comfortable in at least one of JavaScript/TypeScript, Python, Java, or C# β you will write real code
β SQL for data validation
β Git and branching workflows
β CI/CD pipeline configuration β you own your own pipeline integration
β Reading application logs and browser dev tools well enough to diagnose rather than just report
β Docker exposure (good to have)
Domainβ Experience testing enterprise CMS or DXP, Insurance platforms β Sitecore or Drupal a strong plus; any enterprise CMS is relevant
β Content migration validation experience β highly valued given our project mix
β WCAG 2.2 AA in practice
β ISTQB Advanced Level, or equivalent demonstrable depth β preferred, not mandatory
Who this suitsβ You are as proud of a well-designed exploratory session as of a green pipeline
β You have opinions about what not to automate, and can defend them
β You can tell a client "this isn't ready" and keep the relationship intact
β You treat AI tooling as a capable assistant to be supervised, not an oracle
β You are comfortable with ambiguity, thin process, and shifting priorities, because that is the reality of a small team
β You context-switch across two or three clients in a week without dropping threads
β You write clearly.
Half this job is communication.
Who this doesn't suitβ Anyone who needs a fully-specced test case handed to them before starting
β "Automation engineers" who consider manual testing beneath them β half this role is manual, by design
β Manual testers who have avoided learning to code
β Anyone whose automation experience is entirely record-and-playback with no framework design
β Anyone who would ship an AI-generated test suite without reading it
β People who report defects but won't help diagnose them