Databricks-DA-Assoc Understanding the Databricks Platform Practice Question
A data analyst needs to grant a colleague the ability to run an existing Databricks SQL query and view its results, but the colleague must not be able to edit the query text or change its schedule. The query is saved in the workspace. Which permission level should the analyst assign on the query object?
⚠ Common exam trap
The trap here is choosing CAN VIEW for read-only access when the colleague also needs to execute the query, which requires CAN RUN.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
CAN RUN
CAN RUN is the least-privilege permission that lets a user execute a saved query and view results while preventing edits to the query text or schedule. CAN VIEW does not grant run capability, while CAN EDIT and CAN MANAGE both allow modifications that the scenario explicitly forbids.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
CAN EDIT
Why it's wrong here
CAN EDIT allows the colleague to change the query text, which violates the requirement that they must not edit the query. It also typically implies broader control, including the ability to alter the schedule or delete the query. This over-privileges the colleague and does not meet the least-privilege constraint described.
- ✗
CAN VIEW
Why it's wrong here
CAN VIEW allows a user to see the query and its results but does not by itself grant the ability to run the query interactively. The colleague needs to execute the query to get fresh results, so view-only access is insufficient. It also does not clearly separate run permission from edit permission, which is the distinction the scenario requires.
- ✓
CAN RUN
Why this is correct
CAN RUN grants the ability to execute the saved query and see its results without allowing edits to the query text or its schedule. This precisely matches the requirement: the colleague can run the query and view output, but cannot modify it. It is the least-privilege permission that still enables the needed action.
- ✗
CAN MANAGE
Why it's wrong here
CAN MANAGE is the highest permission level and includes editing, deleting, and changing permissions. It far exceeds what the colleague needs and directly contradicts the requirement that they must not edit the query or its schedule. Assigning it would create unnecessary risk and violate least privilege.
About these practice questions
One of 291 original Databricks-DA-Assoc practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Databricks exam blueprint
This Databricks-DA-Assoc practice question is part of Courseiva's free Databricks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the Databricks-DA-Assoc exam.