Your question is Remediating Privilege Escalation. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
Explain how you would identify and remediate privilege escalation paths in AWS or GCP.
Discuss how you would model identities, roles, policies, trust relationships, service accounts, and delegated permissions. Cover the tools, evidence, remediation strategy, validation tests, and monitoring you would use, including how you handle emergency access and avoid breaking production workloads.