Skip to content

300-915 Developing Solutions Using Cisco IoT and Edge Platforms (DEVIOT) Practice Questions

Prepare for 300-915 with more than an answer.

397 questions in the full set20 sample questionsUpdated Jan 23, 2026
Exam fee
$300 USD
Level
Specialist
Valid for
3 years
Domains covered on the exam 7
  1. Cisco Network IoT Architecture20%
  2. Compute and Analysis10%
  3. Cisco IOx IoT Software20%
  4. Cisco Edge Data IoT Software15%
  5. Open Source IoT Software10%
  6. IoT Data Visualization10%
  7. Security15%
  1. 1

    A financial services company is deploying a new application in a hybrid cloud environment. A critical security requirement is to enforce microsegmentation for all application workloads, regardless of whether they are on-premises or in the cloud, to prevent lateral movement of threats. The solution must provide deep visibility into application dependencies and automatically generate segmentation policies. Which Cisco security product is designed specifically for this purpose?

    Show answer details

    Correct answer: D

    Cisco Tetration, now rebranded as Cisco Secure Workload, is a workload protection platform that provides comprehensive visibility and control over application communications. It uses software sensors to map application dependencies and behaviors, then uses this information to automatically generate and enforce microsegmentation policies. This allows for a zero-trust model to be applied to workloads in any data center or cloud environment, directly addressing the requirements.

  2. 2

    A developer needs to create a CI/CD pipeline that automates the deployment of an IOx application directly to an edge device without using a management platform like FND or GMM. Which tool is used to package the application and interact with the IOx agent on the device for installation, activation, and management?

    Show answer details

    Correct answer: B

    The ioxclient is a command-line utility specifically designed for developers to build, package, and manage IOx applications. It can connect directly to an IOx-enabled device to perform actions like application install, application activate, and application start. In a CI/CD pipeline, ioxclient would be scripted to handle the deployment steps directly to the target device.

  3. 3

    True or False: The primary function of Cisco pxGrid (Platform Exchange Grid) is to act as a centralized policy decision point for network access control.

    Show answer details

    Correct answer: B

    This statement is false. Cisco pxGrid is a context-sharing and threat response framework. Its primary function is to enable multi-vendor security products to share data and security context with each other in a publish/subscribe model. While it integrates with Cisco ISE, which IS a policy decision point, pxGrid itself is the messaging bus for sharing the context (like user identity, device posture, threats), not for making the policy decisions.

  4. 4

    A remote oil pipeline monitoring station uses an RTOS-based sensor controller to manage valve pressure. The controller has limited processing power and memory. It needs to send critical alerts over a satellite link with high latency and limited bandwidth. Which communication protocol is most suitable for this environment?

    Show answer details

    Correct answer: C

    MQTT (Message Queuing Telemetry Transport) is specifically designed for constrained devices and low-bandwidth, high-latency, or unreliable networks. Its lightweight publish/subscribe model, small header size, and efficient binary protocol make it ideal for RTOS-based systems with limited resources, like the one described. OPC UA and DDS are more heavyweight and better suited for on-premise industrial networks with more robust connectivity.

  5. 5

    A developer is analyzing a DSLink written in Python that extracts temperature data from a proprietary sensor connected via a serial port. The DSLink frequently crashes. Upon inspection, the code does not have any mechanisms to handle cases where the serial port is unavailable or the data read is corrupted. What programming construct should be added to the code to handle these potential runtime errors gracefully?

    Show answer details

    Correct answer: B

    In Python, a try...except block is the standard mechanism for error and exception handling. The code that might fail (e.g., opening the serial port, reading data) should be placed inside the try block. The except block will then 'catch' specific exceptions (like SerialException or ValueError) if they occur, allowing the program to handle the error—by logging it, retrying, or exiting gracefully—instead of crashing.

  6. 6

    A manufacturing firm is deploying a new IoT solution on Cisco IR1101 routers. The solution requires a custom application to perform real-time data filtering before sending aggregated data to a central server. The development team has created a Docker container for the application. Which command sequence correctly enables the IOx environment and configures a default application profile on the router?

    Show answer details

    Correct answer: C

    The correct command sequence first enters IOx configuration mode with 'iox'. Then, it configures the default application hosting settings, including the virtual network interface card (app-vnic), default gateway, IP address for the application, and resource profiles for CPU, memory, and disk. The other options are incomplete or use incorrect syntax for defining the application resources and networking.

  7. 7

    A developer is tasked with creating a Python script to automate the deployment of an IOx application to a fleet of 500 edge gateways managed by Cisco's Gateway Management Module (GMM). The script needs to authenticate with the GMM API, upload the application package, and then initiate the deployment. Which GMM API endpoint is used to obtain the authentication token required for subsequent API calls?

    Show answer details

    Correct answer: C

    The correct GMM API endpoint to obtain an authentication token is a POST request to /api/v1/token. This request typically includes user credentials (username and password) in the body, and the response contains the JWT (JSON Web Token) used to authenticate all subsequent API calls. The other endpoints are for different functions like deploying applications or are incorrectly formatted.

  8. 8

    An IOx application designed for an x86_64 development environment fails to start on a Cisco IC3000 gateway, which uses an ARM64 architecture. The application log shows an 'exec format error'. The developer needs to modify the Dockerfile to build a multi-architecture image. Which two Dockerfile modifications are required to resolve this issue? (Select TWO).

    Show answer details

    Correct answer: A, C

    Using docker buildx is the modern and recommended way to build multi-architecture Docker images. The --platform flag allows specifying target architectures like linux/arm64.

    Specifying the platform in the FROM instruction ensures that the correct base image for the target architecture is pulled. This is crucial for cross-compiling applications.

  9. 9

    A utility company uses Cisco Edge Intelligence to collect data from various sensors over Modbus. The data needs to be transformed and then sent to both an on-premises historian and an AWS IoT Core endpoint. Which component within the Edge Intelligence data logic is responsible for converting the raw Modbus data into a standardized JSON format before it is processed further?

    Show answer details

    Correct answer: B

    In Cisco Edge Intelligence, the Southbound Connectors, implemented as DSLinks, are responsible for communicating with edge devices and sensors. They acquire data using native protocols like Modbus and perform the initial normalization, converting the raw data into a standardized format (like JSON) for the data logic engine to process.

  10. 10

    True or False: In a secure software development life cycle (SDLC) for an IoT application, Dynamic Application Security Testing (DAST) is primarily used to analyze source code for vulnerabilities before the application is compiled.

    Show answer details

    Correct answer: B

    This statement is false. Static Application Security Testing (SAST) is used to analyze source code, byte code, or binaries for vulnerabilities before compilation or while at rest. Dynamic Application Security Testing (DAST) analyzes a running application for vulnerabilities by simulating external attacks, without needing access to the source code.

Create an account to continue.