AVP, Penetration Tester (LLM)

LPL Financial Holdings, Inc.$128K — $214K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in application/API and network penetration testing
  • At least 5 years troubleshooting tools and writing code to fix issues
  • 3+ years leading end-to-end penetration testing engagements
  • At least 2 years of experience with AI/LLM/GenAI penetration testing
  • 2+ years developing tooling using AI models like Claude

Responsibilities

  • Drive end-to-end penetration testing activities in partnership with product stakeholders
  • Conduct security assessments against OWASP Top 10 threats on targeted applications
  • Develop strategies to identify vulnerabilities in AI systems
  • Document and report testing findings, risk ratings, and remediation recommendations
  • Partner with tech teams to communicate risks and remediation guidance effectively
  • Perform assessments on internal/external networks and cloud environments
  • Lead AI/LLM penetration testing initiatives, ensuring effective communication of status to leadership

Benefits

  • 401K matching
  • Comprehensive health benefits
  • Employee stock options
  • Paid time off
  • Volunteer time off
  • Support for work-life balance
Full Job Description
Job Overview:

As a member of the Cyber Security team, an AVP Penetration Tester of Offensive Security will be responsible for helping with the scheduling, scoping, and execution of internal penetration testing with a strong focus on Large Language Model (LLM), agentic built applications, and supporting API penetration testing.

This role will perform, at advanced levels, manual penetration testing to validate the security of resources across the company as assigned. Candidates will perform hands-on testing as well as serve as the point of contact for the assigned penetration testing activities as a part of their regular duties. The ideal candidate must possess a highly technical skill set, the ability to collaborate with stakeholders across the company to help recommend, as well as test mitigation strategies for challenging, systemic issues, across LPL applications.

Offensive Security is a top area of focus at LPL. This is an exciting time to join the Information Security team as we look for highly skilled people to help expand the current program.

Please note: This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.

Responsibilities:

  • Partner with product stakeholders to drive end-to-end pentesting activities. Including working with Security Architects during the SDLC processes for LLM / AI to make recommendations and offer our ability to identify security weaknesses in applications prior to production deployment.
  • Conduct tactical security penetration test assessments to validate the security of company applications (LLM, agentic built applications, and supporting APIs) against OWASP Top 10 threats work with the Application Security team to provide feedback, and recommendations to increase automated capabilities to include ai assisted tooling.
  • Think creatively and strategically to circumvent security guardrails, identify vulnerabilities, and develop effective mitigation strategies for ai.
  • Stay informed on ever-emerging and fast-changing TTPs, zero-days and remediation strategies for Agentic developed applications, systems, and their supporting infrastructure.
  • Develop/modify custom tooling to solve new needs with the use of models such as Claude.
  • Document and formally report testing initiatives, test findings, justified risk ratings, remediation recommendations, and validation results in a clear and concise manner.
  • Partnering with technology teams to present security testing results, highlight the threat presented, and consult on remediation guidance in a way that is easy IT stakeholders to understand.
  • Perform assessments of internal/external networks, infrastructure, cloud environments, along with a wide array of internally developed and commercial products.
  • Help develop and maintain tools or scripts used in agentic penetration testing.
  • Lead the execution of assigned Ai/LLM penetration testing initiatives to communicate status to leadership.
  • Oversee communication and reporting of findings identified during testing activities and performing retesting to validate successful closure of previously identified findings.
  • Develop tooling for agentic assisted LLM pentesting.


What are we looking for?

We're looking for strong collaborators who deliver exceptional client experiences and thrive in fast-paced, team-oriented environments. Our ideal candidates pursue greatness, act with integrity, and are driven to help our clients succeed. We value those who embrace creativity, continuous improvement, and contribute to a culture where we win together and create and share joy in our work.

Requirements:

  • 5+ years' experience conducting application/API and network-based penetration-testing engagements.
  • 5+ year' troubleshooting tools, manually finding issues in code, and rewriting code to remove bugs.
  • 3+ years' experience leading penetration testing engagements end-to-end.
  • 2+ years' experience pentesting AI/LLM/GenAI applications
  • 2+ years' experience using AI Models such as Claude to rapidly develop tooling.


Core Competencies:

  • Advanced level of knowledge with security assessment tools and frameworks, including Burp Suite, Promptfoo, HexStrike, Claude, CAI, Garak, Pyrit, Kali Linux, Nessus, Metasploit, Cobalt Strike, Mitre Atlas, OWASP Top 10 for LLM, and similar.
  • At least one industry certification such as OSCP, OSAI, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN.
  • Excellent communication skills and ability to collaborate with all stakeholders, internal and external, finding, advising, and implementing the best solutions.
  • Strong organizational skills
  • Insatiable curiosity for tinkering with and circumventing security features and controls.


Preferences:

  • Bachelor's Degree or equivalent in Information Security, Engineering, or Computer Science.
  • Advanced understanding of OWASP, the MITRE ATT&CK framework, Atlas, and the software development lifecycle (SDLC).
  • Advanced knowledge and experience penetration testing AI/LLM systems including MCP servers, Models, and Chatbots.
  • Advanced understanding of tool development with the use of AI such as Claude Code.
  • Advanced knowledge in programming languages (.NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash, C#, Golang, or similar).
  • Advanced level knowledge of Linux/Mac/Windows operating systems, AWS/Azure cloud environments, and cloud-native resources (ex. Containers, Kubernetes, microservices, serverless functions)
  • Breadth and depth of knowledge in security of LLM systems such as MCP servers, models, tooling, and infrastructures.


Please note: This position does not offer work authorization sponsorship now or in the future. Applicants must have valid U.S. work authorization that does not require employer sponsorship.

#LI-Hybrid

Pay Range:
$128,647.00 - $214,343.00
Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play - such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer!

About LPL Financial Holdings, Inc.

LPL Financial Holdings, Inc. Careers

Joining LPL Financial Holdings, Inc. presents an unparalleled opportunity to become part of a leading team of professionals in the financial services industry. The company is renowned for its commitment to innovation, leadership, and professional growth, making it an ideal workplace for ambitious individuals looking to advance their careers.

Explore Job Opportunities

LPL Financial Holdings, Inc. offers a variety of job opportunities that cater to a range of skills and interests. From entry-level positions to senior leadership roles, each job opening provides a platform for personal and professional development. Candidates can expect a rigorous interview process that ensures each team member is not only a fit for the position but also aligns with the company's culture of excellence and integrity.

Internship Programs

For those starting their career journey, LPL Financial Holdings, Inc. provides robust internship programs designed to offer real-world experience in the financial sector. Internships are a cornerstone of the company's commitment to nurturing young talent, providing a foundation of knowledge and skills that are crucial for future employment in the industry.

Commitment to Diversity and Inclusion

Diversity and inclusion are at the heart of LPL Financial Holdings, Inc. The company believes in empowering all employees through diversity training and leadership opportunities that promote an inclusive workplace. This approach not only enhances team collaboration but also drives innovation and creativity.

Benefits and Culture

LPL Financial Holdings, Inc. is dedicated to supporting its employees with comprehensive benefits designed to promote a healthy work-life balance. Benefits include competitive health care options, retirement plans, and wellness programs. The company culture is built on a foundation of mutual respect and teamwork, encouraging networking and professional development across all levels of the organization.

Professional Growth and Development

Employees at LPL Financial Holdings, Inc. are encouraged to continuously enhance their professional skills and advance their careers within the company. Leadership development programs and continuous learning opportunities are readily available, allowing individuals to achieve their career goals and contribute effectively to their teams.

Join the LPL Financial Holdings, Inc. Team

LPL Financial Holdings, Inc. is actively hiring and looking for passionate, creative, and solution-driven team players. Explore open positions that match your skills and interests on the LPL Financial Holdings, Inc. careers page. Each position offers a chance to be part of a dynamic team that is instrumental in shaping the future of financial services.

Stay Connected

Keep up to date with career tips, insider perspectives, and industry-leading insights through the LPL Financial Holdings, Inc. careers blog. Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at LPL Financial Holdings, Inc.

SEARCH LPL FINANCIAL HOLDINGS, INC. JOBS

READ CAREERS BLOG

JOB ALERT EMAILS

Embark on a career path that fosters growth, embraces diversity, and rewards innovation. LPL Financial Holdings, Inc. is not just a company—it's a place where you can make a difference.
Learn more about LPL Financial Holdings, Inc.

Similar Jobs

More Jobs at LPL Financial Holdings, Inc.

More Information Technology Jobs

Find similar AVP, Penetration Tester (LLM) jobs: