HabrJuly 31, 2026🇷🇺Translated from Russian

Bridging Manual and Automated Testing: InfoWatch Engineer Outlines Unified Quality Process

InfoWatch senior test engineer Mikhail Shalepo has shared a comprehensive internal regulation that connects manual and automated testing into one coherent quality process. The article uses the metaphor of an “orange” to describe the overlapping area of functional verification where the two testing approaches must deliver a single, reliable signal about product state.

Shalepo notes that when automation volume, environments, and mandatory runs remain small, teams often rely on shared context. As the product grows, this implicit understanding disappears, creating the need for explicit rules on selecting automation candidates, validating new tests, defining mandatory regression sets, classifying failures, and recording manual compensation.

Core Principles of the Regulation

The document distinguishes between process rules—who decides, what result is recorded, and who owns the next step—and specific engineering decisions for individual features. It establishes that manual testers review the purpose of an automated scenario rather than its code, and that every failure must receive an owner and follow-up action before a run is considered resolved.

The regulation is split into two blocks: development and verification of new functionality, and full regression testing before release. Both blocks follow the same three-stage structure—preparation, execution, and completion—producing clear artifacts at each step.

Feature Development Block

Before a sprint, manual testers and automation engineers meet to discuss scenarios worth automating. Decisions are turned into backlog tasks instead of remaining informal promises. During the sprint, the manual testing team acts as the customer of automation meaning, while smoke tests must pass before any build reaches manual verification. At sprint end, coverage status is recorded directly in TMS Scale to keep the single source of truth up to date.

Pre-Release Regression Block

Before regression begins, teams align on the full scope of checks, supported configurations, and exit criteria. During execution, automated results are triaged jointly with developers; every failure is classified, assigned an owner, and linked to a task or defect. Manual compensation is documented only when an automated signal cannot be restored quickly. At the end of regression, the team produces a connected set of artifacts that allow full reconstruction of the release decision without relying on chat history.

Shalepo emphasizes that the regulation does not guarantee zero defects or automatically shorten regression time. Its value lies in making the basis for release decisions observable and repeatable across the team.

Related articles

HabrOther

Mapping Logical Air Gap Techniques for Secure Network Segmentation

A detailed technical overview explores how organizations can achieve logical air gaps to isolate high-value network segments without completely severing data exchange. The article contrasts classic physical air gaps with everyday reverse proxies and introduces six distinct levels of isolation ranging from physical media to semantic validation. It evaluates each approach across three axes: whether a direct network path remains, which side initiates connections, and whether synchronous responses are possible. Practical constructions such as dual-homed hosts, message brokers, and schema-enforced proxies are examined alongside common misconceptions including reverse tunnels and port knocking. The guide emphasizes that true logical air gaps terminate sessions at an intermediary that then originates new, controlled exchanges. Real-world deployments typically combine multiple layers, such as network separation plus transport proxies plus content validation, to balance security and usability for critical environments like industrial control systems and backup repositories.

HabrOther

Oxygen Cloud Platform Deploys Russian VDI Solution for Heavy 3D CAD Work in One Month

Oxygen Cloud Platform completed a rapid deployment of a domestic VDI infrastructure supporting demanding 3D graphics workloads for an unnamed Russian engineering company. The project replaced six months of prior R&D testing with a one-month rollout using Russian operating systems, hypervisors, and connection protocols. Engineers addressed GPU sharing via Forsite vGate, optimized NVIDIA A40 cards for Siemens NX and Kompas-3D, and resolved multi-monitor detection issues through firmware updates. Network latency was mitigated by tuning the Loudplay protocol and updating Astra Linux, Termidesk, and client components. Automatic resource brokering was configured in Termidesk with separate Active Directory pools to handle varying user profiles across remote sites 1500 km away. The solution delivers protected access to a secure data center over a dedicated channel while meeting strict import-substitution requirements.

HabrOther

MEPhI Opens 2026 Admissions for Online Cybersecurity Master's Program with Yandex Practicum

The National Research Nuclear University MEPhI, in partnership with Yandex Practicum, is accepting applications for its online master's program in Cybersecurity for the 2026 intake. The two-year program leads to a state diploma in Information Security under code 10.04.01 and a professional retraining certificate from Yandex Practicum. Students can choose from four specialized tracks covering AppSec, DevSecOps, network security, and AI security. Admission is fully online and includes document submission via Gosuslugi, an entrance exam, and a motivation letter requiring at least 80 points. The program runs entirely remotely with evening and weekend classes, allowing students to combine studies with work while accessing student benefits and an educational loan at a subsidized 3% rate.

安全客Other

360 Group Launches NanoWork Enterprise AI Platform with Built-in Security and Opens Nationwide Channel Partner Recruitment

On July 28 at the Beijing National Convention Center, 360 Group founder Zhou Hongyi officially unveiled NanoWork, a next-generation enterprise intelligent agent work platform. The platform is designed to bridge the gap between powerful AI models and real-world business tasks by enabling multi-agent collaboration, on-demand model scheduling, and 24/7 cloud operation across diverse scenarios. NanoWork was developed through extensive real-world testing involving 100,000 intelligent agents, coverage of 630 positions over 150 days, consumption of 350 trillion tokens, and collection of 56,000 feedback items. A core emphasis is placed on native security features drawn from 360 Group's two decades of cybersecurity experience to prevent errors that could lead to actual data loss or permission breaches. The company is now actively recruiting city-level channel partners across China to help deploy the solution in local industries and activate existing customer bases with AI capabilities.