Databricks-DE-Assoc Governance and Security Practice Question
What is the primary function of an 'Access Connector' for Azure Databricks when using Unity Catalog?
⚠ Common exam trap
Test-takers frequently assume the Access Connector is used for user authentication, confusing it with credential passthrough rather than recognizing it as a secure system-level bridge for Unity Catalog.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
It allows Databricks to access storage without managing account keys directly.
An Access Connector is a dedicated Azure resource that provides a secure, identity-based bridge between Unity Catalog and Azure Data Lake Storage (ADLS). It manages the identity used by Databricks to read and write data, ensuring that Unity Catalog can enforce access policies without requiring the storage account keys to be shared directly with users or hard-coded into notebooks.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
It acts as a firewall between the Databricks workspace and the public internet.
Why it's wrong here
Access Connectors are identity management tools for storage, not network security appliances. While networking is a critical aspect of Databricks security, features like Private Link or VNet injection are used to handle network traffic isolation and firewalling, which operate at a different layer of the stack than storage access identities.
- ✓
It allows Databricks to access storage without managing account keys directly.
Why this is correct
The Access Connector enables managed identity authentication, which is the most secure way to connect Databricks to ADLS. By leveraging Microsoft Entra ID (now Microsoft Entra ID) identities, it removes the need for managing sensitive storage keys, which are prone to leaks and difficult to rotate securely across large teams.
- ✗
It automatically scales the compute resources of the cluster.
Why it's wrong here
The Access Connector has no relationship with compute resource scaling. Compute scaling is handled by the cluster manager and the Databricks SQL Warehouse service. Associating storage access features with compute performance leads to misunderstandings of the platform's modular architecture, where security and performance are managed by distinct service components.
- ✗
It provides a user interface for browsing the storage account content.
Why it's wrong here
The Access Connector is a back-end security resource and does not provide an interactive user interface. Data browsing is managed through the Catalog Explorer in the Databricks UI, which relies on the underlying permissions defined via the Access Connector to determine what the user is allowed to see.
About these practice questions
Courseiva writes every Databricks-DE-Assoc question from scratch — 276 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Databricks exam blueprint
This Databricks-DE-Assoc practice question is part of Courseiva's free Databricks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the Databricks-DE-Assoc exam.