Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior AI/LLM Penetration Tester

Bishop Fox
CompanyBishop Fox
CategoryData & Analytics
LocationU.S. Remote
RemoteRemote
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted16 Jul 2026
Last verified10 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
For more than two decades, Bishop Fox has defined the forefront of offensive security. By combining elite human  expertise  with the power of its proprietary Cosmos AI engine, the firm delivers industry-leading cloud and application security services, including AI-powered penetration testing and AI/LLM security assessments that reflect real-world attacker behavior. Renowned for its innovation and contributions to the open-source community through flagship tools like  Sliver  and  AIMap , Bishop Fox has released 25+ tools and 75+ advisories in the last 10 years.    As a trusted partner to the world’s most recognizable brands, Bishop Fox protects 26 of the Fortune 100, eight of the top 10 global tech companies, all of the top five global media companies, 10 of the top 20 retailers and 7 of the top 10 manufacturers. A consistent market leader, Bishop Fox has been recognized as a Leader and "Fast Mover" in the GigaOm Radar for Attack Surface Management for five consecutive years. With a 70 NPS rating, the firm remains the trusted partner for organizations seeking to stay ahead of the evolving threat landscape. Learn more at bishopfox.com.  We are now hiring a Senior   AI/LLM Security Consultant  to help clients stay ahead of emerging AI threats by conducting  cutting-edge  security assessments of large language models, AI agents, and AI-powered applications.     Who You Are and What You’ll Do   Our wants are simple: be good at—and most importantly—love what you do. Here's what we're looking for:   5+ years of offensive security experience performing penetration tests, red team engagements, or application security assessments    Experience assessing AI/LLM-powered applications for vulnerabilities such as:    Prompt injection    Jailbreak techniques    Indirect prompt injection    Data leakage and sensitive information disclosure    Insecure tool/function calling    Agentic AI abuse    Model misuse and unsafe output generation    Understanding of modern AI architectures, including:    Experience performing manual application security testing beyond automated scanning    Strong understanding of web application security fundamentals, including the OWASP Top 10 Web, Agentic, and LLM Applications.     Experience reviewing AI application architectures and identifying security weaknesses across APIs, cloud infrastructure, and application logic    Experience performing source code review and dynamic testing    Familiarity with cloud platforms (AWS, Azure, or GCP) and securing AI workloads    Scripting or programming experience in Python, JavaScript Go, Java, or similar languages    Familiarity with   LLM application and agent-orchestration frameworks,  inference  provider APIs,  external capability integration  for models ,  and  open source   tooling across commercial and self-hosted ecosystems.  Knowledge of authentication, authorization, networking, APIs, and secure software development practices    Excellent written and verbal communication skills, including presenting findings to technical and executive audiences    Ability to mentor teammates and contribute to internal research, tooling, and methodology development    OSCP, OSEP, GWAPT, GPEN, GXPN, or other relevant certifications are helpful but not required    Bachelor's degree in Computer Science, Cybersecurity, or a related technical field is a plus