DP-203 Practice Question: Secure, monitor, and optimize data storage and data processing
You need to monitor the performance of an Azure Stream Analytics job in real time. Which Azure service should you use to track the job's resource utilization (e.g., SU % utilization) and set up alerts when the job is approaching its capacity?
⚠ Common exam trap
DP-203 often tests the distinction between Azure Monitor (metrics and alerts) and Log Analytics (log queries), causing candidates to choose Log Analytics for real-time metric monitoring.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Azure Monitor
Azure Monitor is the correct service for real-time monitoring of Azure Stream Analytics jobs, providing metrics such as SU % utilization, watermark delay, and input/output events. It allows you to create alert rules based on these metrics to notify when the job approaches capacity limits.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Azure Monitor
Why this is correct
Azure Monitor collects Stream Analytics job metrics including SU % utilisation and supports metric alerts on thresholds. It satisfies the stem's requirement to track resource utilisation in real time and notify when the job approaches capacity, unlike log-only or billing-focused services.
- ✗
Azure Advisor
Why it's wrong here
Azure Advisor issues best-practise recommendations on configuration and cost; it does not stream live SU % utilisation metrics or raise threshold alerts for a running job. It is tempting as a general optimisation tool, but real-time monitoring and alerting on Stream Analytics metrics is performed through Azure Monitor.
- ✗
Microsoft Sentinel
Why it's wrong here
Microsoft Sentinel is a SIEM/SOAR platform for detecting and investigating security threats; it does not surface Stream Analytics resource metrics such as SU % utilisation. It is tempting when security monitoring is conflated with performance monitoring, but job telemetry and capacity alerts come from Azure Monitor.
- ✗
Azure Log Analytics
Why it's wrong here
Azure Log Analytics stores and queries log data, but SU % utilisation is an Azure Monitor metric, not a log, so it cannot drive the required real-time threshold alerts. It is tempting because Stream Analytics diagnostics can be routed there, yet metric-based alerting is configured in Azure Monitor.
Go deeper
Related to this question
About these practice questions
This DP-203 question is part of Courseiva's 509-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Microsoft exam blueprint
This DP-203 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DP-203 exam.