Skip to content
Tech Interview Prep home
Technical interview guide

Configuration Management

Keeping infrastructure and application configuration consistent, versioned, and reproducible across environments.

Read
30 min
Practice MCQs
25
Interview QA
25
Edition
v4
Editorial status
Reviewed

Scope: Ansible Core, Puppet Core, Chef Infra Client, Salt, Kubernetes, NIST SP 800-128, and CIS Controls guidance current 2026-08-31.

Interview QA

Treat each question like a live interview question: answer out loud first (structure, assumptions, tradeoffs), then open the model answer to spot gaps and rehearse a tighter follow-up.

Curated: · Written: · Reviewed:

QA-1

Design configuration management for a mixed Linux fleet.

QA-2

How would you prove a custom resource is idempotent?

QA-3

Design ordering for package, template, and service resources.

QA-4

How should an organization detect and remediate configuration drift?

QA-5

Resolve two automation systems that continuously overwrite the same setting.

QA-6

Design a configuration data hierarchy across environments.

QA-7

How would you govern third-party configuration modules?

QA-8

Design secure secret use in configuration automation.

QA-9

Plan a high-risk SSH configuration rollout.

QA-10

Explain the limits of check mode or dry-run output.

QA-11

Design exception management for secure configuration baselines.

QA-12

Recover from a partially applied fleet-wide configuration change.

QA-13

How should configuration changes that require restarts be managed?

QA-14

How do dynamic inventories work in configuration management, and how do you handle rapidly auto-scaling fleets?

QA-15

How would you validate a generated service configuration?

QA-16

How do you ensure idempotency when using command or shell tasks in configuration management?

QA-17

How do configuration management and immutable images complement each other?

QA-18

Design the configuration-management control plane itself.

QA-19

When should drift be reported but not automatically remediated?

QA-20

Explain how configuration management supports incident response.

QA-21

Review a proposal to run an unguarded shell task on every agent cycle.

QA-22

How would you prevent a bad baseline from spreading consistently?

QA-23

Design ownership and approval for high-risk configuration settings.

QA-24

Build a test strategy for a reusable configuration role.

QA-25

How should obsolete configuration and modules be retired?