Skip to main content

๐Ÿ›ก๏ธ Azure Databricks Unity Catalog is not configured๐ŸŸขโšช

  • Contextual name: ๐Ÿ›ก๏ธ Databricks Unity Catalog is not configured๐ŸŸขโšช
  • ID: /ce/ca/azure/databricks/unity-catalog
  • Tags:
  • Policy Type: COMPLIANCE_POLICY
  • Policy Categories: SECURITY

Descriptionโ€‹

Open File

Descriptionโ€‹

Unity Catalog is a centralized governance model for managing and securing data in Azure Databricks. It provides fine-grained access control to databases, tables, and views using Microsoft Entra ID identities. Unity Catalog also enhances data lineage, audit logging, and compliance monitoring, making it a critical component for security and governance.

Rationaleโ€‹

  • Enforces centralized access control policies and reduces data security risks.
  • Enables identity-based authentication via Microsoft Entra ID.
  • Improves compliance with industry regulations (e.g. GDPR, HIPAA, SOC 2) by providing audit logs and access visibility.
  • Prevents unauthorized data access through table-, row-, and column-level security (RLS & CLS).

Impactโ€‹

  • Improperly configured permissions may lead to data exfiltration or unauthorized access.
  • Unity Catalog requires structured governance policies to be effective and prevent overly permissive access.

Auditโ€‹

Method 1: Verify unity catalog deployment:

  1. As an Azure Databricks account admin, log into the account console.

... see more

Remediationโ€‹

Open File

Remediationโ€‹

Use the remediation procedure written in this article: https://learn.microsoft.com/en-us/azure/databricks/data-governance/unity-catalog/get-started.

policy.yamlโ€‹

Open File

Linked Framework Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
๐Ÿ’ผ CIS Azure v5.0.0 โ†’ ๐Ÿ’ผ 2.1.5 Ensure that Unity Catalog is configured for Azure Databricks (Manual)1no data
๐Ÿ’ผ Cloudaware Framework โ†’ ๐Ÿ’ผ Data Protection and Recovery18no data