DevOps Mühendisi - Genel Sorular

DevOps Mühendisi 10 soru 06.04.2026
Bu sorular ve cevaplar genel bilgilendirme ve mülakat hazırlık amaçlıdır. Gerçek mülakat sorularını yansıtmaz.
1

DevOps felsefeniz nedir? Development ve Operations arasındaki köprüyü nasıl kurarsınız?

DevOps = Culture + Automation + Measurement. Köprü: 1) Cross-functional teams, 2) Shared responsibilities, 3) Communication tools (Slack, Teams), 4) Collaborative planning. Goal: Silos kaldırmak, deployment frequency artırmak, lead time azaltmak, MTTR düşürmek.
2

CI/CD pipeline'ınız nasıl çalışır? Hangi araçları kullanırsınız?

Pipeline: Code commit → Build → Test → Deploy → Monitor. Tools: Jenkins, GitLab CI, GitHub Actions, CircleCI. Container registry: Docker Hub, ECR. Kubernetes deployment: Helm charts. Quality gates: Automated tests, code quality scans, security scans.
3

Infrastructure as Code (IaC) yaklaşımınız nedir?

IaC benefits: Reproducibility, version control, documentation. Tools: Terraform (multi-cloud), CloudFormation (AWS), Ansible (configuration management). Pattern: Modular, reusable modules, environment separation (dev, staging, prod). State management ve drift detection önemli.
4

Monitoring ve alerting stratejiniz nasıl?

Three pillars: Logs (ELK stack, Splunk), Metrics (Prometheus, Grafana, CloudWatch), Traces (Jaeger, Zipkin). Alerting: Alertmanager, PagerDuty, Opsgenie. SLO/SLA tracking: Error budgets, burn rate alerts. On-call rotation ve runbook setup ederim.
5

Container orchestration ile experience'ınız nedir? Kubernetes kullanımı?

Kubernetes production experience: Deployment, StatefulSets, Services, Ingress, ConfigMaps, Secrets. Helm charts templating. Monitoring: Prometheus operator. GitOps: ArgoCD, Flux. Scaling: HPA, VPA. Self-healing, rolling updates, rollback strategies.
6

Cloud platform deneyiminiz nedir? AWS/Azure/GCP?

Multi-cloud experience: AWS (EC2, S3, RDS, Lambda), Azure (VMs, Blob Storage, Functions), GCP (Compute Engine, Cloud Storage, Cloud Run). Serverless architecture. Cost optimization: Reserved instances, spot instances, auto-scaling. Cloud-native services integration.
7

Security best practices nelerdir? DevSecOps approach?

Shift-left security: SAST, DAST, dependency scanning (Snyk, OWASP). Container security: Image scanning, runtime protection. IAM: Least privilege, RBAC, MFA. Compliance: SOC2, HIPAA, GDPR. Secrets management: HashiCorp Vault, AWS Secrets Manager.
8

Configuration management nasıl yaparsınız?

Tools: Ansible (agentless), Chef, Puppet. Environment variables, config files (YAML, JSON). Secrets: Environment-specific, encrypted storage. Configuration drift prevention. Immutable infrastructure approach. 12-factor app methodology.
9

Disaster recovery ve high availability nasıl sağlarsınız?

HA strategy: Multi-AZ deployment, load balancing, auto-scaling groups. DR strategy: Backup (automated, tested), RTO/RPO definition, failover procedures. Chaos engineering: Gremlin, Chaos Monkey. Regular drills ve documentation. Business continuity planning.
10

Incident management process'iniz nasıl çalışır?

Process: Detection → Response → Mitigation → Resolution → Post-mortem. Tools: PagerDuty, incident.io. Communication: Status page updates, stakeholder notifications. BLAMELESS post-mortem culture. Continuous improvement: Action item tracking.