CrowdStrike Logo

CrowdStrike

Senior Technical Lead, AI Benchmarking and Evaluation Research (Remote, ROU)

Reposted 4 Hours Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in România
Mid level
Remote or Hybrid
Hiring Remotely in România
Mid level
Leads a team researching and evaluating AI, LLM, and agentic systems for cybersecurity workflows. Defines evaluation strategies, benchmark datasets, metrics, methodologies, and reproducible testing pipelines grounded in SOC operations. Assesses model accuracy, robustness, reliability, and operational effectiveness across incident response, threat hunting, alert triage, and investigations. Partners with engineering, product, and threat research teams to translate findings into improvements and communicates results to technical and executive stakeholders.
The summary above was generated by AI

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.


About the Role


The CrowdStrike OCAIO team is looking for a senior technical lead to own how we measure AI models and agentic systems that perform cybersecurity tasks. This is a hands-on leadership role. You will lead a small team of researchers and you will personally help design, build and defend the benchmarks they ship.


Our mission is to establish rigorous, reproducible standards for how well AI and agentic systems perform real security work: malware analysis, reverse engineering, threat intelligence reasoning, alert triage, investigation and response. We build our ground truth with security subject matter experts, not with other models, and we score agents on what they actually did, not only on what they said.


As the Senior Lead, you define what "good" looks like for an AI system operating in a security workflow, you build the datasets, rubrics and judges that encode that definition, and you run the standing scorecards that engineering, product and research teams use to decide what ships. You set the technical bar and you meet it yourself.


What You'll Do


Hands-on benchmark work (about half of your time):

- Design and build benchmark datasets for cybersecurity agent tasks, from task definition through expert-labeled ground truth, scoring rubrics and release.

- Build and calibrate judges (LLM-based and programmatic) against expert labels, measure agreement and publish where they disagree.

- Build reproducible evaluation harnesses that capture agent actions and traces, not only transcripts, so results are defensible and comparable across model versions.

- Run and publish standing scorecards of CrowdStrike agents and frontier models on the same tasks, with protection, correctness and usefulness reported together.

- Investigate failure modes personally: where agents collapse, why, and what evidence proves it.

- Write the research: internal reports and external papers or talks that establish the benchmark's credibility.


Leading the team and the function:

- Lead, mentor and grow a team of researchers and engineers; review their designs, labels and code.

- Set the strategy, roadmap and success metrics for evaluating AI and agentic systems across security use cases.

- Define and enforce the evaluation methodology and the shared task and trace formats used across benchmarking and red teaming.

- Secure and coordinate subject matter expert labeling time from SOC, threat research and malware analysis teams, and set the quality bar for every label.

- Collaborate with engineering, product and threat research to turn evaluation findings into agreed pass/fail criteria and shipped improvements.

- Communicate results, trade-offs and limitations clearly to technical and executive audiences. Report what was not tested as plainly as what was.


What You'll Need


- Hands-on cybersecurity expertise in at least one of: malware analysis and reverse engineering, incident response and threat hunting, detection engineering, SOC operations. You can label ground truth yourself and judge whether an expert's label is right.

- Demonstrated experience building evaluations, benchmarks or datasets for AI or LLM systems, with shareable artifacts (papers, repositories, internal benchmarks with measured adoption).

- Strong Python and data tooling skills. You write production-quality evaluation code, harnesses and analysis, and you review others' code.

- Practical experience with LLMs and agentic systems: tool use, multi-step planning, sandboxing, and how to instrument and trace agent behavior.

- At least 2 years leading technical people (as a team lead, tech lead or manager), with a record of growing researchers and engineers while remaining hands-on.

- Ability to define, design and standardize evaluation methodologies and reproducible testing pipelines, and to defend them under scrutiny.

- Broad knowledge of the cybersecurity landscape: attack techniques, defensive controls, and the analyst workflows that AI is meant to augment.

- Exceptional written and spoken communication. You can present measured findings and their limitations to executives and to researchers.

- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.


Bonus Points


- Published research or talks on AI evaluation, LLM judging, or AI security.

- Experience with adversarial testing or red teaming of AI systems, and with scoring agents from observed side effects rather than text.

- Experience building LLM judges and measuring judge agreement with human experts.

- Experience with SOC platforms, SIEM/SOAR tooling and detection engineering.

- Understanding of MITRE ATT&CK and how it maps to detection and response workflows.

- Relevant security certifications (GREM, GCFA, GCIH, GCIA, OSCP or equivalent).

- Experience fine-tuning or distilling models on expert-labeled decision data.

#LI-JP1

#LI-GT1

#LI-Remote


Benefits of Working at CrowdStrike:

  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.


CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.


If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at [email protected] for further assistance.


CrowdStrike Kirkland, Washington, USA Office

Kirkland, WA, United States

Similar Jobs at CrowdStrike

21 Days Ago
Remote or Hybrid
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Design, build, operate, and maintain scalable distributed systems supporting CrowdStrike’s Intelligence pipelines. Gather requirements from analysts, develop processing and data integration systems, make autonomous architecture decisions, maintain Go and Python codebases, deploy production services, document solutions, train users, and communicate technical details effectively. The role requires independent execution in a geographically distributed team and includes opportunities to work with cloud platforms, APIs, web interfaces, malware analysis, and AI technologies.
Top Skills: Amazon Ec2Amazon EcsAmazon S3Amazon VpcAWSCloud TechnologiesContainersGCPGoHttp ApisLinuxNoSQLPythonSingle-Page Applications (Spa)SQL
28 Days Ago
Remote or Hybrid
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Leads research and production development of generative AI and large language model systems for cybersecurity. Responsibilities include defining AI research strategy, developing novel reasoning and summarization approaches, selecting model architectures and deployment strategies, building large-scale production systems, mentoring scientists, establishing evaluation standards, and guiding cross-functional technical initiatives. The role also represents the company through publications, speaking engagements, and technical thought leadership.
Top Skills: Cloud TechnologiesDeep LearningGpu TechnologiesLarge Language Models (Llms)Python
28 Days Ago
Remote or Hybrid
Entry level
Entry level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Design, implement, and maintain IAM and access-control systems for CrowdStrike’s global, multi-cloud Falcon platform. Manage IAM lifecycle operations, security governance, least-privilege controls, threat modeling, audits, and incident response. Develop automation and integrations, ensure access-system reliability at scale, and advise product and engineering stakeholders on security. The role also involves improving cybersecurity practices, supporting compliance, and applying AI technologies to enhance workflows and decision-making.
Top Skills: AnsibleAws IamAzure EntraBashDirectory ServicesFederationGcp IamGdprGoIso 27001KerberosLinuxMfaMicrosoft Active DirectoryNistOci IamOidcPythonSaltstackSAMLService MeshSoc 2SsoTerraformUnix

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account