Databricks Data Engineer Associate exam dumps

Databricks Data Engineer Associate practice question 471 of 532

Databricks Certified Data Engineer Associate. Associate level, Databricks. Free question with the correct answer and a full explanation.

Databricks Data Engineer Associate Question 471

Select 3

You are tasked with implementing a data governance strategy on a Databricks Lakehouse platform. A key requirement is to ensure that sensitive data is protected and only accessible to authorized users. Which of the following actions should you take to implement this requirement?

  1. A

    Apply table ACLs (Access Control Lists) to manage user and group permissions on specific tables.

  2. B

    Enable and configure Unity Catalog to manage data access policies at a fine-grained level.

  3. C

    Use Delta Lake's built-in encryption to restrict access to sensitive data dynamically.

  4. D

    Tag sensitive data columns with appropriate labels and enforce policies based on those tags.

  5. E

    Disable Delta Sharing to prevent external data sharing and ensure sensitive data stays within the platform.

Show answer and explanation

Correct answers: A, B, D

Explanation

To implement a data governance strategy that protects sensitive data and restricts access to authorized users, you should use table ACLs for permission management, enable Unity Catalog for fine-grained access control, and tag sensitive data columns to enforce policies. Delta Sharing can be securely configured and does not need to be disabled to meet this requirement, and Delta Lake itself does not provide dynamic access restrictions through encryption.

  • A. Correct.

    Applying table ACLs is a key step in managing user and group permissions, ensuring only authorized users can access specific tables.

  • B. Correct.

    Unity Catalog provides centralized fine-grained access control and governance for data, meeting the requirement of protecting sensitive data.

  • C. Incorrect.

    Delta Lake does not have built-in encryption for dynamically restricting access; encryption is handled at the storage layer but does not manage user access.

  • D. Correct.

    Tagging sensitive data columns and enforcing policies based on those tags is an effective governance practice for managing sensitive data.

  • E. Incorrect.

    Disabling Delta Sharing is not required to restrict access to sensitive data. Delta Sharing can be configured to securely share only non-sensitive data with external parties.

Timed practice exam

Take a Databricks Data Engineer Associate practice test under exam conditions

45 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam