[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"me":3,"catalog:en:devops-cloud\u002Fterraform-testing-policy-cicd":4,"config":256},null,{"field_key":5,"field_name":6,"seniority":7,"topic_key":8,"topic_name":9,"spec_key":7,"spec_name":7,"locale":10,"cell_total":11,"field_total":12,"seniorities":13,"topics":17,"specs":151,"samples":171},"devops-cloud","DevOps \u002F Cloud","","terraform-testing-policy-cicd","Terraform Testing Policy Cicd","en",75,3375,[14,15,16],"junior","mid","senior",[18,21,24,27,30,33,36,39,42,45,48,51,54,57,60,63,66,69,72,75,78,81,84,87,90,93,96,99,102,105,108,111,114,117,120,123,126,129,132,135,138,141,144,147,150],{"key":19,"name":20,"count":11},"aws-compute-ec2-lambda","Aws Compute Ec2 Lambda",{"key":22,"name":23,"count":11},"aws-databases-rds-dynamodb","Aws Databases Rds Dynamodb",{"key":25,"name":26,"count":11},"aws-iam-security","Aws Iam Security",{"key":28,"name":29,"count":11},"aws-messaging-eventing","Aws Messaging Eventing",{"key":31,"name":32,"count":11},"aws-networking-vpc","Aws Networking Vpc",{"key":34,"name":35,"count":11},"aws-storage-s3-ebs","Aws Storage S3 Ebs",{"key":37,"name":38,"count":11},"azure-compute-vm-appservice","Azure Compute Vm Appservice",{"key":40,"name":41,"count":11},"azure-databases-sql-cosmosdb","Azure Databases Sql Cosmosdb",{"key":43,"name":44,"count":11},"azure-iam-security","Azure Iam Security",{"key":46,"name":47,"count":11},"azure-messaging-eventing","Azure Messaging Eventing",{"key":49,"name":50,"count":11},"azure-networking-vnet","Azure Networking Vnet",{"key":52,"name":53,"count":11},"azure-storage-blob-managed-disk","Azure Storage Blob Managed Disk",{"key":55,"name":56,"count":11},"ci-cd-pipelines","Ci Cd Pipelines",{"key":58,"name":59,"count":11},"cloud-architecture-scaling","Cloud Architecture Scaling",{"key":61,"name":62,"count":11},"containers-orchestration","Containers Orchestration",{"key":64,"name":65,"count":11},"deployment-release-strategies","Deployment Release Strategies",{"key":67,"name":68,"count":11},"gcp-compute-gce-cloudrun","Gcp Compute Gce Cloudrun",{"key":70,"name":71,"count":11},"gcp-databases-cloudsql-spanner-firestore","Gcp Databases Cloudsql Spanner Firestore",{"key":73,"name":74,"count":11},"gcp-iam-security","Gcp Iam Security",{"key":76,"name":77,"count":11},"gcp-messaging-eventing","Gcp Messaging Eventing",{"key":79,"name":80,"count":11},"gcp-networking-vpc","Gcp Networking Vpc",{"key":82,"name":83,"count":11},"gcp-storage-gcs-persistent-disk","Gcp Storage Gcs Persistent Disk",{"key":85,"name":86,"count":11},"infrastructure-as-code","Infrastructure As Code",{"key":88,"name":89,"count":11},"k8s-config-secrets","K8s Config Secrets",{"key":91,"name":92,"count":11},"k8s-observability-troubleshooting","K8s Observability Troubleshooting",{"key":94,"name":95,"count":11},"k8s-scheduling-resources","K8s Scheduling Resources",{"key":97,"name":98,"count":11},"k8s-services-networking","K8s Services Networking",{"key":100,"name":101,"count":11},"k8s-storage","K8s Storage",{"key":103,"name":104,"count":11},"k8s-workloads","K8s Workloads",{"key":106,"name":107,"count":11},"linux-filesystem-permissions-links","Linux Filesystem Permissions Links",{"key":109,"name":110,"count":11},"linux-networking-tools-troubleshooting","Linux Networking Tools Troubleshooting",{"key":112,"name":113,"count":11},"linux-performance-monitoring-resource-limits","Linux Performance Monitoring Resource Limits",{"key":115,"name":116,"count":11},"linux-process-management-signals","Linux Process Management Signals",{"key":118,"name":119,"count":11},"linux-shell-scripting-ops-automation","Linux Shell Scripting Ops Automation",{"key":121,"name":122,"count":11},"linux-systemd-service-management","Linux Systemd Service Management",{"key":124,"name":125,"count":11},"networking-dns-loadbalancing","Networking Dns Loadbalancing",{"key":127,"name":128,"count":11},"observability-monitoring","Observability Monitoring",{"key":130,"name":131,"count":11},"reliability-incident-sre","Reliability Incident Sre",{"key":133,"name":134,"count":11},"security-iam-secrets","Security Iam Secrets",{"key":136,"name":137,"count":11},"terraform-hcl-language-expressions","Terraform Hcl Language Expressions",{"key":139,"name":140,"count":11},"terraform-modules-workspaces","Terraform Modules Workspaces",{"key":142,"name":143,"count":11},"terraform-plan-apply-drift-import","Terraform Plan Apply Drift Import",{"key":145,"name":146,"count":11},"terraform-providers-lifecycle-provisioners","Terraform Providers Lifecycle Provisioners",{"key":148,"name":149,"count":11},"terraform-state-backend-locking","Terraform State Backend Locking",{"key":8,"name":9,"count":11},[152,156,159,162,165,168],{"key":153,"name":154,"count":155},"aws","AWS",450,{"key":157,"name":158,"count":155},"azure","Azure",{"key":160,"name":161,"count":155},"gcp","GCP",{"key":163,"name":164,"count":155},"kubernetes","Kubernetes",{"key":166,"name":167,"count":155},"linux","Linux",{"key":169,"name":170,"count":155},"terraform","Terraform",[172,190,203,217,230,243],{"id":173,"topic":9,"difficulty":174,"body":175,"options":176,"correct_key":181,"explanation":189},"019f8ebc-ded1-7b8f-84fd-51472079c4e0",1,"What does `terraform fmt` do?",[177,180,183,186],{"key":178,"text":179},"a","It applies the configuration to the target infrastructure after formatting it",{"key":181,"text":182},"b","It rewrites configuration files into a canonical style without changing their logic.",{"key":184,"text":185},"c","It validates that resource arguments reference real provider attributes",{"key":187,"text":188},"d","It downloads and locks provider versions into a lock file","`terraform fmt` is purely a style tool: it rewrites .tf files into the canonical HCL formatting (indentation, alignment, spacing) and does not touch the actual logic or check correctness. Applying, validating, and provider locking are separate commands (`apply`, `validate`, `init`).",{"id":191,"topic":9,"difficulty":174,"body":192,"options":193,"correct_key":184,"explanation":202},"019f8ebc-ded2-7a63-97af-051f9038bfa0","What does `terraform validate` primarily check?",[194,196,198,200],{"key":178,"text":195},"Whether the target cloud account has enough quota to create the planned resources",{"key":181,"text":197},"Whether the resources described already exist and match the real infrastructure",{"key":184,"text":199},"Internal syntax and consistency of the configuration.",{"key":187,"text":201},"Whether the CI pipeline has permission to run `terraform apply`","`terraform validate` performs a syntax and internal-consistency check: it confirms the configuration is a valid HCL structure, required arguments are present, and referenced values resolve within the configuration. It does not talk to the cloud provider to compare against real infrastructure — that is `terraform plan`'s job.",{"id":204,"topic":9,"difficulty":205,"body":206,"options":207,"correct_key":178,"explanation":216},"019f8ebc-ded4-784f-a659-a0f71ffb0a32",2,"A pipeline runs `terraform validate` without ever configuring cloud credentials, and it still succeeds. Why is this possible?",[208,210,212,214],{"key":178,"text":209},"Validate only checks the configuration's internal structure, without authenticating against the provider API.",{"key":181,"text":211},"Validate silently skips all resources it cannot authenticate against, which is a bug some teams rely on",{"key":184,"text":213},"Validate always fails without credentials, so this scenario is impossible",{"key":187,"text":215},"Validate automatically falls back to a cached copy of the last successful plan","Because `terraform validate` is a purely local\u002Fstatic check (types, required arguments, internal references), it does not need to reach the provider API. `terraform plan` and `terraform apply`, in contrast, need real credentials because they compare configuration against actual remote state.",{"id":218,"topic":9,"difficulty":205,"body":219,"options":220,"correct_key":187,"explanation":229},"019f8ebc-ded6-707d-9c3d-3c955738221f","tflint is often run alongside `terraform validate` in a CI pipeline. What does tflint add on top of what validate already checks?",[221,223,225,227],{"key":178,"text":222},"Nothing meaningful — tflint and validate check exactly the same things, so running both is redundant",{"key":181,"text":224},"tflint replaces the need for `terraform plan` entirely, since it can simulate real infrastructure changes",{"key":184,"text":226},"tflint applies the configuration to a sandbox account to catch runtime errors before production",{"key":187,"text":228},"tflint adds provider-specific best-practice and correctness checks beyond generic HCL syntax validity.","`terraform validate` only confirms the configuration is structurally valid HCL. tflint, via its core rules plus provider-specific plugins (e.g. for AWS), additionally flags issues like deprecated syntax, unused declarations, or invalid provider-specific values that are syntactically fine but semantically wrong.",{"id":231,"topic":9,"difficulty":174,"body":232,"options":233,"correct_key":181,"explanation":242},"019f8ebc-ded7-7a7b-a4e2-d849e176c1cf","What is the general idea behind 'policy as code' in a Terraform pipeline?",[234,236,238,240],{"key":178,"text":235},"Writing internal documentation about infrastructure policies in a wiki, separate from the pipeline",{"key":181,"text":237},"Expressing organizational rules as machine-checkable rules the pipeline evaluates against a plan.",{"key":184,"text":239},"Manually reviewing every plan output line by line before every apply, with no automation involved",{"key":187,"text":241},"Replacing `terraform validate` entirely, since policy tools also check HCL syntax","Policy as code means organizational or compliance rules are written as executable rules (e.g. with Sentinel or OPA) that a pipeline runs automatically against a plan, so violations (like a publicly-exposed resource) are caught consistently and automatically rather than relying on a human remembering to check.",{"id":244,"topic":9,"difficulty":205,"body":245,"options":246,"correct_key":184,"explanation":255},"019f8ebc-deda-7255-b19e-1afc67299de4","Why is it common practice to run `terraform plan` as part of a pull-request check, and post its output as a PR comment, before merging?",[247,249,251,253],{"key":178,"text":248},"Because `terraform plan` modifies the real infrastructure, so it must happen before merge to save time",{"key":181,"text":250},"Because posting the plan is required by Terraform itself; the CLI refuses to apply otherwise",{"key":184,"text":252},"So reviewers can see the infrastructure impact of a PR before approving the merge.",{"key":187,"text":254},"Because `terraform plan` is the only command capable of catching HCL syntax errors","Posting the plan output on the PR gives reviewers visibility into the concrete infrastructure impact of a change (what will be created, changed, or destroyed) as part of the normal code review flow, catching unintended changes before they're merged and later applied.",{"fields":257,"seniorities":429,"interview_shapes":430,"locales":435,"oauth":437,"question_count":440,"coach_enabled":441,"jd_match_enabled":441},[258,283,303,320,330,343,362,381,403,410,416,423],{"key":259,"name_tr":260,"name_en":260,"sort":174,"specializations":261},"backend","Backend",[262,265,268,271,274,277,280],{"key":263,"name":264,"field":259},"general","Genel",{"key":266,"name":267,"field":259},"go","Go",{"key":269,"name":270,"field":259},"python","Python",{"key":272,"name":273,"field":259},"java","Java",{"key":275,"name":276,"field":259},"csharp","C#\u002F.NET",{"key":278,"name":279,"field":259},"nodejs","Node.js",{"key":281,"name":282,"field":259},"php","PHP",{"key":284,"name_tr":285,"name_en":285,"sort":205,"specializations":286},"frontend","Frontend",[287,288,291,294,297,300],{"key":263,"name":264,"field":284},{"key":289,"name":290,"field":284},"javascript","JavaScript",{"key":292,"name":293,"field":284},"typescript","TypeScript",{"key":295,"name":296,"field":284},"react","React",{"key":298,"name":299,"field":284},"vue","Vue",{"key":301,"name":302,"field":284},"angular","Angular",{"key":304,"name_tr":305,"name_en":305,"sort":306,"specializations":307},"fullstack","Fullstack",3,[308,309,310,311,312,313,314,315,316,317,318,319],{"key":263,"name":264,"field":304},{"key":266,"name":267,"field":259},{"key":269,"name":270,"field":259},{"key":272,"name":273,"field":259},{"key":275,"name":276,"field":259},{"key":278,"name":279,"field":259},{"key":281,"name":282,"field":259},{"key":289,"name":290,"field":284},{"key":292,"name":293,"field":284},{"key":295,"name":296,"field":284},{"key":298,"name":299,"field":284},{"key":301,"name":302,"field":284},{"key":5,"name_tr":6,"name_en":6,"sort":321,"specializations":322},4,[323,324,325,326,327,328,329],{"key":263,"name":264,"field":5},{"key":153,"name":154,"field":5},{"key":160,"name":161,"field":5},{"key":157,"name":158,"field":5},{"key":163,"name":164,"field":5},{"key":169,"name":170,"field":5},{"key":166,"name":167,"field":5},{"key":331,"name_tr":332,"name_en":332,"sort":333,"specializations":334},"ai-engineer","AI Engineer",5,[335,336,337,340],{"key":263,"name":264,"field":331},{"key":269,"name":270,"field":331},{"key":338,"name":339,"field":331},"llm-rag","LLM\u002FRAG",{"key":341,"name":342,"field":331},"mlops","MLOps",{"key":344,"name_tr":345,"name_en":346,"sort":347,"specializations":348},"database","Veritabanı","Database",6,[349,350,353,356,359],{"key":263,"name":264,"field":344},{"key":351,"name":352,"field":344},"postgresql","PostgreSQL",{"key":354,"name":355,"field":344},"mysql","MySQL",{"key":357,"name":358,"field":344},"mongodb","MongoDB",{"key":360,"name":361,"field":344},"redis","Redis",{"key":363,"name_tr":364,"name_en":365,"sort":366,"specializations":367},"mobile","Mobil","Mobile",7,[368,369,372,375,378],{"key":263,"name":264,"field":363},{"key":370,"name":371,"field":363},"ios-swift","iOS (Swift)",{"key":373,"name":374,"field":363},"android-kotlin","Android (Kotlin)",{"key":376,"name":377,"field":363},"flutter","Flutter",{"key":379,"name":380,"field":363},"react-native","React Native",{"key":382,"name_tr":383,"name_en":384,"sort":385,"specializations":386},"security","Güvenlik","Security",8,[387,388,391,394,397,400],{"key":263,"name":264,"field":382},{"key":389,"name":390,"field":382},"appsec","AppSec",{"key":392,"name":393,"field":382},"offensive-pentest","Offensive \u002F Pentest",{"key":395,"name":396,"field":382},"cloud-security","Cloud Security",{"key":398,"name":399,"field":382},"devsecops","DevSecOps",{"key":401,"name":402,"field":382},"blue-team-incident","Blue Team \u002F Incident",{"key":404,"name_tr":405,"name_en":406,"sort":407,"specializations":408},"qa-test-automation","QA \u002F Test Otomasyonu","QA \u002F Test Automation",9,[409],{"key":263,"name":264,"field":404},{"key":411,"name_tr":412,"name_en":412,"sort":413,"specializations":414},"data-engineer","Data Engineer",10,[415],{"key":263,"name":264,"field":411},{"key":417,"name_tr":418,"name_en":419,"sort":420,"specializations":421},"game-dev","Oyun Geliştirme","Game Development",11,[422],{"key":263,"name":264,"field":417},{"key":424,"name_tr":425,"name_en":425,"sort":426,"specializations":427},"ml-engineer","ML Engineer",12,[428],{"key":263,"name":264,"field":424},[14,15,16],{"junior":431,"mid":433,"senior":434},{"questions":432,"median_sec":3},20,{"questions":432,"median_sec":3},{"questions":432,"median_sec":3},[436,10],"tr",[438,439],"google","github",21750,true]