Your question is Secure a CI/CD Pipeline. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
You are responsible for improving the security of an existing CI/CD pipeline used to build, test, and deploy cloud-native services. The pipeline works, but security controls were added inconsistently over time, and you want to reduce exposure without slowing releases to a halt.
How would you secure a CI/CD pipeline against common vulnerabilities?