AVP, Penetration Tester

LPL Financial Holdings, Inc.$122K — $204K *
Finance & Insurance
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in application, API, and network penetration testing
  • 6+ years troubleshooting tools and identifying code vulnerabilities
  • 3+ years leading testing engagements from scoping to reporting
  • 1+ year testing AI-enabled applications
  • Advanced knowledge of security assessment tools and frameworks, including OWASP Top 10 and MITRE ATT&CK

Responsibilities

  • Collaborate with stakeholders on penetration testing activities throughout the SDLC
  • Conduct assessments of web, mobile, and API applications against OWASP Top 10 threats
  • Perform security assessments of various networks and products
  • Identify vulnerabilities and develop remediation recommendations
  • Develop custom tools and scripts for penetration testing needs
  • Document and report findings and remediation guidance clearly
  • Present results to technology and business partners succinctly

Benefits

  • 401K matching
  • Comprehensive health benefits
  • Employee stock options
  • Generous paid time off
  • Volunteer time off opportunities
Full Job Description

Job Overview

As a member of the Cyber Security team, the Senior Penetration Tester, Offensive Security, is responsible for the scheduling, scoping, and execution of internal penetration testing, with a primary focus on web, mobile, cloud, API, and AI‑enabled applications.

This individual contributor role performs advanced manual penetration testing to validate the security of company resources. The position serves as the primary point of contact for assigned testing initiatives and partners closely with stakeholders across the organization to identify security weaknesses, recommend mitigation strategies, and validate remediation efforts across LPL applications and platforms.

Responsibilities

  • Partner with product and technology stakeholders to drive end‑to‑end penetration testing activities, including collaboration with Security Architects throughout the SDLC to identify and address security issues prior to production deployment

  • Conduct tactical penetration testing assessments of web, mobile, and API applications against OWASP Top 10 threats and emerging risks, and collaborate with Application Security teams to provide actionable feedback and recommendations, including opportunities to expand automated and AI‑assisted testing capabilities

  • Perform security assessments of internal and external networks, infrastructure, cloud environments, and a wide range of internally developed and commercial products

  • Apply creative and analytical thinking to bypass security controls, identify vulnerabilities, and develop practical remediation guidance; stay informed on evolving tactics, techniques, and procedures (TTPs), zero‑day vulnerabilities, and mitigation strategies

  • Develop or modify custom tools and scripts to support new penetration testing needs, automation, and AI‑assisted testing approaches

  • Document and formally report testing scope, methodology, findings, risk ratings, remediation recommendations, and validation results in a clear and concise manner

  • Present testing results to technology and business partners, clearly communicating risk, impact, and remediation guidance in an accessible and collaborative way

  • Lead execution of assigned penetration testing initiatives, including status communication to leadership and coordination with stakeholders

  • Oversee communication, tracking, and retesting of findings to validate successful closure of previously identified issues

  • Assist with validation and triage of submissions from the company’s Vulnerability Disclosure Program and Bug Bounty programs

What are we looking for?

We are seeking collaborative professionals who enjoy hands‑on technical work and take pride in delivering a high‑quality internal client experience. This role is well suited for individuals who thrive in a fast‑paced environment, enjoy solving complex security challenges, and continuously look for ways to improve processes, tooling, and outcomes.

Requirements

  • 8+ years of experience conducting application, API, and network‑based penetration testing engagements

  • 6+ years of experience troubleshooting tools, manually identifying vulnerabilities in code, and rewriting code to remediate security issues

  • 3+ years of experience leading penetration testing engagements from scoping through reporting and remediation validation

  • 1+ year of experience testing AI, LLM, or Generative AI‑enabled applications

  • 1+ year of experience using AI models (such as Claude or similar) to accelerate tool development or testing workflows + Advanced knowledge of security assessment tools and frameworks, such as Burp Suite, Kali Linux, Nessus, Accunetix, Metasploit, AutoSploit, Cobalt Strike, MITRE ATT&CK, MITRE ATLAS, OWASP Top 10 (including OWASP Top 10 for LLMs)

Preferences

  • Bachelor’s degree or equivalent experience in Information Security, Engineering, Computer Science, or a related field

  • Advanced understanding of OWASP frameworks, MITRE ATT&CK and ATLAS, and secure software development lifecycle (SDLC) practices

  • At least one industry‑recognized certification, such as OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN

  • Advanced proficiency in one or more programming or scripting languages, such as .NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash, or similar

  • Advanced knowledge of Linux, macOS, and Windows operating systems, as well as AWS and Azure cloud environments and cloud‑native services (e.g., containers, Kubernetes, microservices, serverless functions)

  • Experience performing reverse engineering on mobile applications, including those with obfuscation or anti‑emulation protections

  • Broad knowledge of operating system security, networking and protocols, firewalls, databases, middleware, forensics, and secure coding practices

  • Effective written and verbal communication skills, with the ability to collaborate with technical and non‑technical stakeholders

  • Organized approach to managing multiple testing efforts and deliverables

  • A natural curiosity for exploring, testing, and understanding security controls and how they can be improved



Pay Range:

$122,570.00 - $204,249.00
 Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer!

About LPL Financial Holdings, Inc.

LPL Financial Holdings, Inc. Careers

Joining LPL Financial Holdings, Inc. presents an unparalleled opportunity to become part of a leading team of professionals in the financial services industry. The company is renowned for its commitment to innovation, leadership, and professional growth, making it an ideal workplace for ambitious individuals looking to advance their careers.

Explore Job Opportunities

LPL Financial Holdings, Inc. offers a variety of job opportunities that cater to a range of skills and interests. From entry-level positions to senior leadership roles, each job opening provides a platform for personal and professional development. Candidates can expect a rigorous interview process that ensures each team member is not only a fit for the position but also aligns with the company's culture of excellence and integrity.

Internship Programs

For those starting their career journey, LPL Financial Holdings, Inc. provides robust internship programs designed to offer real-world experience in the financial sector. Internships are a cornerstone of the company's commitment to nurturing young talent, providing a foundation of knowledge and skills that are crucial for future employment in the industry.

Commitment to Diversity and Inclusion

Diversity and inclusion are at the heart of LPL Financial Holdings, Inc. The company believes in empowering all employees through diversity training and leadership opportunities that promote an inclusive workplace. This approach not only enhances team collaboration but also drives innovation and creativity.

Benefits and Culture

LPL Financial Holdings, Inc. is dedicated to supporting its employees with comprehensive benefits designed to promote a healthy work-life balance. Benefits include competitive health care options, retirement plans, and wellness programs. The company culture is built on a foundation of mutual respect and teamwork, encouraging networking and professional development across all levels of the organization.

Professional Growth and Development

Employees at LPL Financial Holdings, Inc. are encouraged to continuously enhance their professional skills and advance their careers within the company. Leadership development programs and continuous learning opportunities are readily available, allowing individuals to achieve their career goals and contribute effectively to their teams.

Join the LPL Financial Holdings, Inc. Team

LPL Financial Holdings, Inc. is actively hiring and looking for passionate, creative, and solution-driven team players. Explore open positions that match your skills and interests on the LPL Financial Holdings, Inc. careers page. Each position offers a chance to be part of a dynamic team that is instrumental in shaping the future of financial services.

Stay Connected

Keep up to date with career tips, insider perspectives, and industry-leading insights through the LPL Financial Holdings, Inc. careers blog. Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at LPL Financial Holdings, Inc.

SEARCH LPL FINANCIAL HOLDINGS, INC. JOBS

READ CAREERS BLOG

JOB ALERT EMAILS

Embark on a career path that fosters growth, embraces diversity, and rewards innovation. LPL Financial Holdings, Inc. is not just a company—it's a place where you can make a difference.
Learn more about LPL Financial Holdings, Inc.

Similar Jobs

More Jobs at LPL Financial Holdings, Inc.

More Finance & Insurance Jobs

Find similar AVP, Penetration Tester jobs: