Welcome to your interview.
The question is on your right: Secure REST APIs. Take a moment with it first.
Talk your thinking through with me if you like - when you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes). Discussion and graded submissions share your five interviewer interactions, so spend them well.
What is your approach to securing a REST API against common vulnerabilities like those found in the OWASP Top 10 at Full Visibility?