Your question is Driving Security Into the SDLC. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
Tell me about a time you had to integrate security into an existing software development lifecycle where it was not consistently built in. How did you influence engineering and product stakeholders, what changes did you put in place, and what measurable impact did those changes have?