Infrastructure as code
What the files are for, before any command.
- Explain what infrastructure as code is
- Describe the advantages of infrastructure-as-code patterns
- Explain multi-cloud, hybrid cloud, and service-agnostic workflows
Study guide · Exam overview
The format and eight published objectives of HashiCorp Certified: Terraform Associate, plus the distinctions worth learning before you book the 004 exam.
Exam version notice: This overview follows the HashiCorp Terraform Associate (004) objectives reviewed in October 2026. That exam tests Terraform 1.12, lasts 1 hour, and costs $70.50 USD plus local taxes and fees. HashiCorp does not publish a question count, a passing score, or domain weights. Items tagged Extra are useful context the objective list does not name. Confirm the current page on the HashiCorp certification site before you register.
HashiCorp Certified: Terraform Associate is the foundational Terraform certification. It checks whether you can explain infrastructure as code, use the core workflow, read and write configuration, manage state, and describe how HCP Terraform changes that workflow. It is not a professional design exam. You are not asked to build a production landing zone from memory.
HashiCorp describes the candidate as a cloud engineer with foundational Terraform knowledge who can tell Terraform Enterprise features apart from Community Edition. The expected background is basic terminal skills and an understanding of on-premises and cloud architecture. Professional experience helps. Practicing the objectives in a personal demo is also enough preparation, according to HashiCorp.
Figures below come from the Terraform Associate (004) certification page reviewed in October 2026.
| Specification | Terraform Associate (004) |
|---|---|
| Level | Foundational. There is no required prior certification. HashiCorp calls the credential Terraform Associate. |
| Length of test | 1 hour. The exam is online proctored. |
| Question types | Multiple choice, including true or false and multiple-answer items. The stem says how many answers to choose. |
| Number of questions | HashiCorp does not publish a fixed count. Do not treat a practice length as the live exam length. |
| Passing score | Not published. There is no public scaled-score range to convert a practice percentage into. |
| Version tested | Terraform 1.12. |
| Exam price | $70.50 USD, plus locally applicable taxes and fees. A free retake is not included. |
| Language | English. |
| Validity | The credential expires after 2 years. Renewal depends on which exam version you hold. |
Compared with the 003 exam, 004 adds dependency and lifecycle rules, custom validation conditions, ephemeral values and write-only arguments, and HCP Terraform workspaces and projects. It tests Terraform 1.12. If you hold an older Associate credential, read HashiCorp's recertification scenarios before you assume a new pass extends the same badge.
HashiCorp lists eight objectives and does not assign percentages. The bars are a study share based on how many sub-objectives each section contains. They are not official weights. The 200 practice questions use the same share.
What the files are for, before any command.
Providers, and why state exists.
The commands you run in order.
The largest section. Read HCL and say what will happen.
How a directory becomes a reusable unit.
Where state lives, and what happens when reality drifts.
Bring an existing object under management, and inspect what Terraform recorded.
The hosted service, not a second copy of the CLI.
Learn the unmarked rows first. The same map is in the core notes and flashcards.
| Need | Concept to recognize | Remember |
|---|---|---|
| Preview a change | terraform plan | Shows create, update, and destroy. It does not apply unless you tell it to. |
| Check files without calling an API | terraform validate | Syntax and internal consistency. Run init first so provider schemas load. |
| Rewrite style only | terraform fmt | Canonical format. It does not decide whether the configuration is valid. |
| Read something you do not manage | data block | A resource block would try to create that object. |
| Hide a secret in CLI output | sensitive = true | Redacts the CLI. The value is still written to state unless it is ephemeral. |
| Keep a secret out of state | Ephemeral value | Used during the run and not stored. A write-only argument accepts it and cannot be read back. |
| Stop two applies at once | State locking | A remote backend is what a team uses. The lock is not a backup of the state file. |
| Adopt an existing object | import block | Associates a real object with an address. It does not destroy that object. |
| Remote runs and remote state | HCP Terraform workspace | One workspace has its own state, variables, and runs. A project groups workspaces. |
| Extra CLI workspaces | terraform workspace | Separate state names in one directory. Not the HCP Terraform workspace in objective 8. |
| Extra Force a replacement | terraform apply -replace | The current replacement for the older taint command. Taint is not the 004 workflow. |
HashiCorp says Associate exams use true or false, multiple choice, and multiple-answer items, and that the stem tells you how many answers to select. The questions are not meant to test spelling or obscure flags. This site's practice questions use multiple choice, multiple response, matching, and ordering. Matching and ordering are extra practice for the distinctions in the objectives. They are not a claim about the live item mix.
A typical stem asks which command, block, or setting fits a constraint: whether the value lands in state, whether the plan will create or only read, or whether two people can apply at once. Distractors are nearby Terraform ideas that solve a different problem. terraform fmt is not terraform validate. A data block is not a resource. An HCP Terraform workspace is not a CLI workspace. sensitive = true is not encryption and does not keep a value out of state.
HashiCorp does not publish a penalty for a wrong guess. On a timed practice exam, answer every item, then use the review to see which objective actually needs work.
A practical sequence if plan output and state still blur together.
Explain infrastructure as code in one sentence, then name why a reviewed file is safer than a console click. Place one provider on two clouds and say what state records.
init, validate, plan, apply, destroy, and fmt. Say which command talks to the remote API and which one only rewrites whitespace.
Separate resource and data. Trace one reference. Add a variable, an output, and a module call. Then say when depends_on is required and when a reference is enough.
Local backend versus a remote backend with locking. Drift versus a refresh-only apply. sensitive versus ephemeral. Import an address without destroying the object.
A workspace holds state, variables, and runs. A project groups workspaces. A VCS connection starts a remote run. Policy checks are governance, not a provider.
Use the four flashcard decks until you can answer before the card flips. Then take original questions and return to any objective under 75 percent. Aim for a steady 85 percent. Use 60 minutes as the pace of the live exam.
The overview, core notes, flashcards, and practice exams are all published.
Exam format, Terraform 1.12, the eight objectives, and a study plan.
Reference notes for providers, the workflow, configuration, modules, state, and HCP Terraform.
40 recall cards in four decks, plus memory notes for workflow, state, and secrets.
200 original questions with custom exams, explanations, and a score report by objective.
HashiCorp gives you 1 hour. The exam is online proctored and multiple choice, including multiple-answer items. HashiCorp does not publish a fixed question count.
HashiCorp does not publish a passing score or a scaled-score range for Terraform Associate (004). A practice percentage on this site is not a prediction.
Terraform 1.12. Confirm the version on the HashiCorp certification page before you book, because exam versions change.
Yes. The credential expires after 2 years. Renewal options depend on which exam version you passed. Confirm the current policy with HashiCorp.
There is no required prior certification. HashiCorp expects basic terminal skills and an understanding of on-premises and cloud architecture. Professional experience is recommended, and practicing the objectives in a personal demo is also accepted.
No. The practice questions on this site are original. They are not HashiCorp exam items, and a practice score does not predict a result.
Command names and product names change. HCP Terraform is the hosted service that older material may still call Terraform Cloud. Use the current HashiCorp objectives as the authority when they differ from these notes.
Useful companions while you study.
Convert structured data between JSON and YAML with formatting and validation.
Compare two text blocks and highlight added, removed, and changed content.
Generate strong random passwords with custom length, characters, symbols, and security options.
Encode text and files to Base64 or decode Base64 data with UTF-8 support.
NodnWebTools provides general informational, educational, and convenience resources. Calculations, conversions, estimates, and learning materials may contain errors or become outdated. Financial, tax, medical, legal, and travel information is not professional advice. Verify important results and current requirements with qualified professionals or authoritative sources. Protect sensitive files and personal information, review each tool’s privacy limitations, and use only content you are authorized to process. You are responsible for how you use and share results. Study resources are independent and do not guarantee exam success or imply certification-provider endorsement. HashiCorp, Terraform, and HCP Terraform are trademarks of HashiCorp. NodnWebTools is not affiliated with, endorsed by, or sponsored by HashiCorp or IBM.