Welcome to your interview.
The question is on your right: Handle Ambiguity in Security Decisions. Take a moment with it first.
Talk your thinking through with me if you like - when you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes). Discussion and graded submissions share your five interviewer interactions, so spend them well.
You're leading a security engineering initiative where the problem is real, but the path forward is unclear. Different stakeholders want different outcomes: some want the fastest risk reduction, others want minimal disruption to delivery, and the available data is incomplete.
How would you handle ambiguity when there is no obvious right answer?