Your question is Security Scanning in CI/CD. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
What is your approach to integrating automated security scanning and compliance checks into existing CI/CD workflows?
Explain how you would assess the current pipeline, select and sequence security controls, manage false positives, and introduce enforcement without unnecessarily slowing delivery. Address ownership, exception handling, reporting, rollout validation, and how you would coordinate with engineering, security, and compliance stakeholders.