AVP, Penetration Tester

Posted 10 Days Ago
Be an Early Applicant
6 Locations
In-Office
123K-204K Annually
Senior level
Fintech
The Role
Lead and execute advanced manual penetration tests across web, mobile, API, cloud, and AI-enabled applications. Scope, conduct, and report findings; develop custom tools/scripts; validate remediations; collaborate with stakeholders, Application Security, and bug bounty programs to improve offensive security posture.
Summary Generated by Built In

Where Ambition Meets Innovation

Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you’ll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.

At LPL Financial, protecting our clients, advisors, and employees is foundational to everything we do. Offensive Security is a top area of investment within Information Security, and this role offers the opportunity to directly influence the security posture of a large, complex enterprise. If you enjoy hands‑on technical work, collaborating across teams, and creatively testing the limits of modern systems, this is an exciting opportunity to help evolve LPL’s offensive security capabilities.

Job Overview

As a member of the Cyber Security team, the Senior Penetration Tester, Offensive Security, is responsible for the scheduling, scoping, and execution of internal penetration testing, with a primary focus on web, mobile, cloud, API, and AI‑enabled applications.

This individual contributor role performs advanced manual penetration testing to validate the security of company resources. The position serves as the primary point of contact for assigned testing initiatives and partners closely with stakeholders across the organization to identify security weaknesses, recommend mitigation strategies, and validate remediation efforts across LPL applications and platforms.

Responsibilities

  • Partner with product and technology stakeholders to drive end‑to‑end penetration testing activities, including collaboration with Security Architects throughout the SDLC to identify and address security issues prior to production deployment

  • Conduct tactical penetration testing assessments of web, mobile, and API applications against OWASP Top 10 threats and emerging risks, and collaborate with Application Security teams to provide actionable feedback and recommendations, including opportunities to expand automated and AI‑assisted testing capabilities

  • Perform security assessments of internal and external networks, infrastructure, cloud environments, and a wide range of internally developed and commercial products

  • Apply creative and analytical thinking to bypass security controls, identify vulnerabilities, and develop practical remediation guidance; stay informed on evolving tactics, techniques, and procedures (TTPs), zero‑day vulnerabilities, and mitigation strategies

  • Develop or modify custom tools and scripts to support new penetration testing needs, automation, and AI‑assisted testing approaches

  • Document and formally report testing scope, methodology, findings, risk ratings, remediation recommendations, and validation results in a clear and concise manner

  • Present testing results to technology and business partners, clearly communicating risk, impact, and remediation guidance in an accessible and collaborative way

  • Lead execution of assigned penetration testing initiatives, including status communication to leadership and coordination with stakeholders

  • Oversee communication, tracking, and retesting of findings to validate successful closure of previously identified issues

  • Assist with validation and triage of submissions from the company’s Vulnerability Disclosure Program and Bug Bounty programs

What are we looking for?

We are seeking collaborative professionals who enjoy hands‑on technical work and take pride in delivering a high‑quality internal client experience. This role is well suited for individuals who thrive in a fast‑paced environment, enjoy solving complex security challenges, and continuously look for ways to improve processes, tooling, and outcomes.

Requirements

  • 8+ years of experience conducting application, API, and network‑based penetration testing engagements

  • 6+ years of experience troubleshooting tools, manually identifying vulnerabilities in code, and rewriting code to remediate security issues

  • 3+ years of experience leading penetration testing engagements from scoping through reporting and remediation validation

  • 1+ year of experience testing AI, LLM, or Generative AI‑enabled applications

  • 1+ year of experience using AI models (such as Claude or similar) to accelerate tool development or testing workflows + Advanced knowledge of security assessment tools and frameworks, such as Burp Suite, Kali Linux, Nessus, Accunetix, Metasploit, AutoSploit, Cobalt Strike, MITRE ATT&CK, MITRE ATLAS, OWASP Top 10 (including OWASP Top 10 for LLMs)

Preferences

  • Bachelor’s degree or equivalent experience in Information Security, Engineering, Computer Science, or a related field

  • Advanced understanding of OWASP frameworks, MITRE ATT&CK and ATLAS, and secure software development lifecycle (SDLC) practices

  • At least one industry‑recognized certification, such as OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN

  • Advanced proficiency in one or more programming or scripting languages, such as .NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash, or similar

  • Advanced knowledge of Linux, macOS, and Windows operating systems, as well as AWS and Azure cloud environments and cloud‑native services (e.g., containers, Kubernetes, microservices, serverless functions)

  • Experience performing reverse engineering on mobile applications, including those with obfuscation or anti‑emulation protections

  • Broad knowledge of operating system security, networking and protocols, firewalls, databases, middleware, forensics, and secure coding practices

  • Effective written and verbal communication skills, with the ability to collaborate with technical and non‑technical stakeholders

  • Organized approach to managing multiple testing efforts and deliverables

  • A natural curiosity for exploring, testing, and understanding security controls and how they can be improved


 

Pay Range:

$122,570.00 - $204,249.00
 
Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer!
 

Company Overview:

LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace(6) , LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit www.lpl.com.


At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients.


For further information about LPL, please visit www.lpl.com.


Join the LPL team and help us make a difference by turning life’s aspirations into financial realities. Please log in or create an account to apply to this position. Principals only. EOE.


Information on Interviews:

LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum.  During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant’s bank or credit card.  Should you have any questions regarding the application process, please contact LPL’s Human Resources Solutions Center at (855) 575-6947.


EAC 5.19.26

Skills Required

  • 8+ years of experience conducting application, API, and network-based penetration testing engagements
  • 6+ years of experience troubleshooting tools, manually identifying vulnerabilities in code, and rewriting code to remediate security issues
  • 3+ years of experience leading penetration testing engagements from scoping through reporting and remediation validation
  • 1+ year of experience testing AI, LLM, or Generative AI-enabled applications
  • 1+ year of experience using AI models (such as Claude or similar) to accelerate tool development or testing workflows
  • Advanced knowledge of security assessment tools and frameworks (Burp Suite, Kali Linux, Nessus, Accunetix, Metasploit, AutoSploit, Cobalt Strike, MITRE ATT&CK, MITRE ATLAS, OWASP Top 10 including OWASP Top 10 for LLMs)
  • Bachelor's degree or equivalent experience in Information Security, Engineering, Computer Science, or a related field
  • At least one industry-recognized certification (OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN)
  • Advanced proficiency in one or more programming or scripting languages (e.g., .NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash)
  • Advanced knowledge of Linux, macOS, and Windows operating systems, and AWS and Azure cloud environments and cloud-native services (containers, Kubernetes, serverless)
  • Experience performing reverse engineering on mobile applications, including obfuscation or anti-emulation protections
  • Effective written and verbal communication skills and ability to collaborate with technical and non-technical stakeholders
  • Organized approach to managing multiple testing efforts and deliverables
  • Curiosity for exploring and improving security controls and processes

LPL Financial Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about LPL Financial and has not been reviewed or approved by LPL Financial.

  • Retirement Support Retirement programs include a company 401(k) match that is frequently highlighted as a strong component of total rewards. Feedback suggests these features meaningfully enhance long‑term financial value.
  • Equity Value & Accessibility An employee stock purchase plan with a meaningful discount and lookback is highlighted as accessible ownership. Feedback suggests the plan adds tangible upside beyond base salary.
  • Parental & Family Support Paid parental leave has been expanded alongside family‑building and adoption support. Feedback suggests these benefits compare well to large‑employer standards.

LPL Financial Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Diego, CA
8,926 Employees
Year Founded: 1989

What We Do

Financial advice is changing, and at LPL Financial, we’re at the forefront. We’re building a future where advisors can—with no friction or complexity, as simple as turning the dials—pick the business model, services, technology, and product mix that best meet their clients’ needs. With one platform, one sign-on, and one team to call, you can take your business anywhere you want it to go. There are no limits to your growth, and we’ll partner with you every step of the way. Your greatness is our goal. LPL Financial is a leader in the retail financial advice market and the nation’s largest independent broker/dealer*. We serve independent financial advisors and financial institutions, providing them with the technology, research, clearing and compliance services, and practice management programs they need to create and grow thriving practices. LPL enables them to provide objective guidance to millions of American families seeking wealth management, retirement planning, financial planning and asset management solutions. LPL.com Securities and Advisory Services offered through LPL Financial. A registered investment advisor, Member FINRA/SIPC.

Similar Jobs

In-Office
6 Locations
8926 Employees
123K-204K Annually

Cox Enterprises Logo Cox Enterprises

Senior Product Manager

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Hybrid
Austin, TX, USA
50000 Employees
112K-186K Annually

Cox Enterprises Logo Cox Enterprises

Senior Manger, National Sales (Cox Fleet)

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
50000 Employees
70K-165K Annually

Acquia Logo Acquia

Director, Partner GTM

AdTech • Cloud • Marketing Tech • Productivity • Software • Analytics • Automation
Easy Apply
Remote or Hybrid
United States
1100 Employees
174K-200K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account