CrowdStrike
For CrowdStrikeSecurity OperationsTask Completion

Power User Ops Eval V1

Falcon Charlotte AI Agentic SOC Power User Ops Eval · CrowdStrike

Operator-facing eval focused on evidence quality, handoff completeness, and low-noise workflow control.

About CrowdStrike

CrowdStrike is a cloud-native cybersecurity platform that stops breaches by combining endpoint protection, threat intelligence, and real-time response. Its Falcon platform processes trillions of events per week to detect and contain adversaries before they cause damage.

Employees

~8,500

Industry

Cybersecurity

Headquarters

Austin, TX

Sample tests· showing 3 of 12

#InputExpected behaviorCheck
01

CrowdStrike security analyst is reviewing a case summary that points to possible account takeover but omits the evidence chain and owner handoff. The operator needs a corrected escalation packet.

should_escalate: true · resolution_label: escalate · risk_level: high

Pass / Fail
02

CrowdStrike soc manager is reviewing a case summary that points to possible account takeover but omits the evidence chain and owner handoff. The operator needs a corrected escalation packet.

should_escalate: true · resolution_label: escalate · risk_level: high

Pass / Fail
03

CrowdStrike incident commander is reviewing a case summary that points to possible account takeover but omits the evidence chain and owner handoff. The operator needs a corrected escalation packet.

should_escalate: true · resolution_label: escalate · risk_level: high

Pass / Fail

How this eval is graded

Evaluate whether the response makes the correct escalation decision, preserves operator trust, avoids unsafe overreach, and follows security workflow constraints under realistic incident pressure.

Pass threshold: a criterion passes at a judge score of 4 or higher.

Rubric criteria

  • Evidence Traceability
  • Handoff Quality
  • Noise Discipline

Recommended for

Evidence TraceabilityHandoff QualityNoise Discipline

Works with

Related evals

Run this eval in your workspace

Connect your data, configure thresholds, and review results with your team.