Penetration Tester
1. Fully Remote
2. Outside IR35
3. Job type: Contract
4. Sector: Financial Services
5. Job reference: JEM/43645
Apply for this job
Penetration Tester needed with hands-on experience in testing Generative AI systems, LLMs, or AI-driven bots. In this role, you will lead and support security assessments targeting traditional infrastructure and AI-powered systems, including prompt injection testing, model exploitation, adversarial ML, and AI supply chain vulnerabilities. You will collaborate with product, data science, and AI teams to identify and mitigate security weaknesses in novel AI-driven applications.
Key Responsibilities
6. Conduct penetration tests on web applications, APIs, networks, and infrastructure, including AI-integrated systems.
7. Perform red teaming and threat modelling exercises specifically targeting AI models (eg, LLMs, chatbot interfaces, vector databases, and orchestration frameworks like LangChain or AutoGen).
8. Evaluate AI systems for prompt injection vulnerabilities, data leakage, model abuse, prompt chaining issues, and adversarial inputs.
9. Work with development and AI teams to build secure-by-design systems, offering actionable remediation guidance.
10. Conduct testing of model endpoints for issues such as insecure output handling, unauthorized access to functions, or data poisoning.
11. Develop custom testing tools or use existing frameworks (eg, LLM Guardrails, OpenAI evals, or adversarial attack libraries like TextAttack or IBM’s ART).
12. Create detailed reports with findings, impact analysis, and recommendations for technical and non-technical stakeholders.
13. Stay updated on the latest threats, vulnerabilities, and mitigations affecting generative AI systems and machine learning platforms.
Apply for this job Full name Email address Phone (optional) Message Add CV (optional) Upload your CV/resume or any other relevant file. Max. file size: 2 MB. I consent to the storing and processing of my personal data as detailed in Barclay Simpson’s Privacy Policy. Are you human?
We seek individuals from a diverse talent pool and encourage applicants from underrepresented groups to apply to our vacancies. Our commitment to fair recruitment processes means that we welcome applicants from all backgrounds, regardless of their lived experience or personal characteristics. We also invite applicants who meet most of the listed requirements, even if not all, to apply. If you require any adjustments to the application process, please let us know.
Barclay Simpson acts as an Employment Agency for permanent positions and an Employment Business for temporary/contract engagements.
Jeff Mayger – Interim Security
Executive Consultant
View my profile Looking to hire?
Other jobs I manage
14. Penetration Tester
15. Splunk Administrator
16. Cyber Security/IT Controls Testing Consultant