AVP, Penetration Tester
$122.57k - $204.25kLPL Financial LLC
Senior Penetration Tester, Offensive Security
Where ambition meets innovation
Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you'll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.
At LPL Financial, protecting our clients, advisors, and employees is foundational to everything we do. Offensive Security is a top area of investment within Information Security, and this role offers the opportunity to directly influence the security posture of a large, complex enterprise. If you enjoy hands-on technical work, collaborating across teams, and creatively testing the limits of modern systems, this is an exciting opportunity to help evolve LPL's offensive security capabilities.
Job Overview
As a member of the Cyber Security team, the Senior Penetration Tester, Offensive Security, is responsible for the scheduling, scoping, and execution of internal penetration testing, with a primary focus on web, mobile, cloud, API, and AI-enabled applications.
This individual contributor role performs advanced manual penetration testing to validate the security of company resources. The position serves as the primary point of contact for assigned testing initiatives and partners closely with stakeholders across the organization to identify security weaknesses, recommend mitigation strategies, and validate remediation efforts across LPL applications and platforms.
Responsibilities
- Partner with product and technology stakeholders to drive end-to-end penetration testing activities, including collaboration with Security Architects throughout the SDLC to identify and address security issues prior to production deployment
- Conduct tactical penetration testing assessments of web, mobile, and API applications against OWASP Top 10 threats and emerging risks, and collaborate with Application Security teams to provide actionable feedback and recommendations, including opportunities to expand automated and AI-assisted testing capabilities
- Perform security assessments of internal and external networks, infrastructure, cloud environments, and a wide range of internally developed and commercial products
- Apply creative and analytical thinking to bypass security controls, identify vulnerabilities, and develop practical remediation guidance; stay informed on evolving tactics, techniques, and procedures (TTPs), zero-day vulnerabilities, and mitigation strategies
- Develop or modify custom tools and scripts to support new penetration testing needs, automation, and AI-assisted testing approaches
- Document and formally report testing scope, methodology, findings, risk ratings, remediation recommendations, and validation results in a clear and concise manner
- Present testing results to technology and business partners, clearly communicating risk, impact, and remediation guidance in an accessible and collaborative way
- Lead execution of assigned penetration testing initiatives, including status communication to leadership and coordination with stakeholders
- Oversee communication, tracking, and retesting of findings to validate successful closure of previously identified issues
- Assist with validation and triage of submissions from the company's Vulnerability Disclosure Program and Bug Bounty programs
What are we looking for?
We are seeking collaborative professionals who enjoy hands-on technical work and take pride in delivering a high-quality internal client experience. This role is well suited for individuals who thrive in a fast-paced environment, enjoy solving complex security challenges, and continuously look for ways to improve processes, tooling, and outcomes.
Requirements
- 8+ years of experience conducting application, API, and network-based penetration testing engagements
- 6+ years of experience troubleshooting tools, manually identifying vulnerabilities in code, and rewriting code to remediate security issues
- 3+ years of experience leading penetration testing engagements from scoping through reporting and remediation validation
- 1+ year of experience testing AI, LLM, or Generative AI-enabled applications
- 1+ year of experience using AI models (such as Claude or similar) to accelerate tool development or testing workflows + Advanced knowledge of security assessment tools and frameworks, such as Burp Suite, Kali Linux, Nessus, Accunetix, Metasploit, AutoSploit, Cobalt Strike, MITRE ATT&CK, MITRE ATLAS, OWASP Top 10 (including OWASP Top 10 for LLMs)
Preferences
- Bachelor's degree or equivalent experience in Information Security, Engineering, Computer Science, or a related field
- Advanced understanding of OWASP frameworks, MITRE ATT&CK and ATLAS, and secure software development lifecycle (SDLC) practices
- At least one industry-recognized certification, such as OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN
- Advanced proficiency in one or more programming or scripting languages, such as.NET, JavaScript, Python, Java, PowerShell, Perl, Ruby, Bash, or similar
- Advanced knowledge of Linux, macOS, and Windows operating systems, as well as AWS and Azure cloud environments and cloud-native services (e.g., containers, Kubernetes, microservices, serverless functions)
- Experience performing reverse engineering on mobile applications, including those with obfuscation or anti-emulation protections
- Broad knowledge of operating system security, networking and protocols, firewalls, databases, middleware, forensics, and secure coding practices
- Effective written and verbal communication skills, with the ability to collaborate with technical and non-technical stakeholders
- Organized approach to managing multiple testing efforts and deliverables
- A natural curiosity for exploring, testing, and understanding security controls and how they can be improved
Pay Range:
$122,570.00 - $204,249.00 Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer!
Company Overview:
LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace, LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit
At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients.
For further information about LPL, please visit
Join the LPL team and help us make a difference by turning life's aspirations into financial realities. Please log in or create an account to apply to this position. Principals only. EOE.
Information on Interviews:
LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant's bank or credit card. Should you have any questions regarding the application process, please contact LPL's Human Resources Solutions Center at View phone number on click.appcast.io.
EAC 5.19.26
$76.4k - $138.6k
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. Today’s world is fueled by vast amounts...SuggestedSummer holidayLocal areaFlexible hours$180k - $240k
...We're one global team driven by our common purpose to deliver a better world. Join us. Job Description AECOM is hiring an AVP, Dams Engineering Practice Leader for our West Region Water Business Line to take the lead in advancing dam and hydropower projects...SuggestedLocal areaWorldwideFlexible hours$500 per month
...Become a Professional Game Tester We're looking for passionate gamers to join our elite team of mobile game testers. Get paid to play and test the latest games before they launch. $500+ Avg Monthly Pay 5-10 Hours/Week 100% Remote Position Requirements:...SuggestedRemote work10 hours per week- Job Description Job Description Digital Forensic Analyst Employment Type: Full-Time, Mid-Level Department: Forensics CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation & collection of mobile device and cloud-stored...SuggestedFull timeWork at officeRemote workFlexible hours
- Security Engineer Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms. Security at Saronic is a force multiplier. We'...SuggestedPermanent employmentContract workTemporary workWork at office
- Job Overview The Office of the CISO safeguards IBM systems and client systems globally. The IBM CISO office covers Vulnerability Management, Threat Detection, Security Operations, Product Security, Mail Security, System Inventory, Endpoint Detection, and Computer Security...Work at office
- The Texas Association of School Boards is seeking a Systems Administrator III - Infrastructure Engineer in Austin, Texas. This role focuses on network segmentation, enterprise connectivity, and secure infrastructure design. The successful candidate will manage and support...Remote job
- Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence services Industry Market Research Type Privately Held About the Role The Company is in need of a Virtual Chief Information...Part time
$147.5k - $245.9k
...AVP, Software Engineer Where ambition meets innovation Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you'll find the ingredients...Work at officeWork from homeShift work- ...regulatory, and internal requirements, managing risk-based decisions where required. Support customer security reviews, audits, penetration testing activities, security questionnaires, and technical assurance discussions. Provide technical leadership, architectural...Remote workFlexible hours
$71.2k - $158.2k
Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required cybersecurity...Contract workTemporary workWork experience placementRelocationFlexible hours- Job Description The Role GM’s Cybersecurity Team safeguards the company’s global information assets, networks, and infrastructure. Our mission is to proactively defend GM against evolving cyber threats through strategic leadership, technical excellence, and innovative...Local areaWork from homeRelocation package
$145k - $200k
At ERCOT, our diverse and dynamic work environment provides a platform on which employees can work together to build the future of the Texas power grid and wholesale market utilizing the latest technologies and resources. We encourage you to join our talented, dedicated...Contract workWork experience placementLocal areaRemote workFlexible hours2 days per week- Chief Information Security Officer (CISO) About the Company Accomplished executive search firm Industry Staffing and Recruiting Type Privately Held About the Role The Company is seeking a Chief Information Security Officer (CISO) to oversee and direct...
- Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security Officer...
- Job Description Job Description ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation...Full timeLocal areaFlexible hours
- Job Description Job Description Please Note: To conform with the United States Government Space Technology Export Regulations, the applicant must be a U.S. citizen, lawful permanent resident of the U.S., conditional resident, asylee or refugee (protected individuals...Permanent employmentFull timeContract workWork experience placementWork at officeLocal areaRelocation package
$122.6k - $165.8k
About the Team The Manager of Cybersecurity Advisors is a key member of the Managed Services leadership team overseeing a portion of our Advisors around the globe. Rapid7 Managed Services continues to experience significant growth, and this leader will help evolve the ongoing...Local area- A prominent IT solutions provider is looking for an IT System Analyst specializing in systems analysis and administration. The ideal candidate will have extensive experience with IBM products, operational enhancements, and a strong background in software installation/configuration...
- Chief Information Security Officer At Texas Children's Hospital, our mission starts with our people. Guided by our HEART values—Humility, Excellence, Accountability, Respect, and Trust—we strive to create a workplace where teammates feel valued, supported, and empowered...
$82.7k - $173.9k
Job Description ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans , Transitioning Military, National Guard and Reserve...Contract workWork experience placementLocal area- Job Description Job Description Position: MAL - 1971 - Vulnerability Remediation & Change Coordination Analyst - RITM1787828 Location: Austin, TX , Hybrid - On Site and Telework. Direct Client: State of Texas - Texas Department of Transportation . Duration...Remote work
- ...safeguard our digital infrastructure. The role involves monitoring for vulnerabilities, responding to incidents, and performing penetration testing to ensure robust security measures. The ideal candidate should have a Bachelor’s in Cybersecurity, 3-5 years of experience...
- Job Description The Role GM's Cybersecurity Team safeguards the company's global information assets, networks, and infrastructure. Our mission is to proactively defend GM against evolving cyber threats through strategic leadership, technical excellence, and innovative...Contract workLocal areaWork from homeRelocation package
- Risk Management Consultant Define end to end governance workflows for: Risk identification and intake Risk review and validation Risk acceptance, mitigation, or transfer Ongoing monitoring and periodic reassessment Establish roles and responsibilities...Contract workFor contractors
- A leading technology firm in Austin is seeking a Digital Forensic Examiner to conduct advanced forensic examinations and eDiscovery. You will support legal, HR, and law enforcement investigations, ensuring evidence is collected and analyzed per legal standards. Ideal candidates...
- A construction management firm in Austin, Texas, is seeking a skilled manager for FEMA Public Assistance programs following disasters. The role involves overseeing the entire grant lifecycle, ensuring compliance, and managing communication with clients and agencies. Ideal...
- Introduction At IBM Software, we transform client challenges into solutions. Building the world’s leading AI-powered, cloud-native products that shape the future of business and society. Our legacy of innovation creates endless opportunities for IBMers to learn, grow, and...
$170k - $200k
An Amazing Career Opportunity for a Senior Product Vulnerability Manager!! Location: Remote (US & Europe) Job ID: 47562 As part of the Product Security and Privacy team, you will own and operate the corporate-wide Product Vulnerability Management program. You...Job sharingPart timeRemote workWorldwideFlexible hours- Job Description Job Description Position: Senior SDET Engineer Location: Austin, TX ( Remote untilCovid ) Duration: 12 months Job Description: Must have: · Bachelors or Masters in CS or related degrees. · 9 years with hands on experience in software...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to AVP, Penetration Tester. Be the first to apply!


