Courseiva
Governance and Security →hardMultiple Choice

Databricks-DE-Assoc Governance and Security Practice Question

Which of the following describes the correct order of operations to configure a new external location in Unity Catalog?

⚠ Common exam trap

Candidates often attempt to create an external location before setting up the underlying storage credential, forgetting that the location explicitly depends on a pre-existing credential object.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Create credential, create location, grant privileges.

The process begins with creating a storage credential, which holds the cloud-specific security details (like an IAM role or service account). This credential is then used to define the external location, which points to a specific path in cloud storage. Finally, you grant the user or service the 'READ FILES' or 'WRITE FILES' privilege on the external location to permit interaction with the underlying data files within the Unity Catalog framework.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Grant privileges, create location, create credential.

    Why it's wrong here

    Privileges cannot be granted before the resource itself has been created. The logical dependency is reversed here; you must define the infrastructure components (credential and location) before you can authorize any users or groups to perform actions within those specific cloud storage paths inside the Unity Catalog ecosystem.

  • ✓

    Create credential, create location, grant privileges.

    Why this is correct

    This is the correct sequence. A storage credential encapsulates the cloud permissions required to access the files. Then, the location maps that credential to a specific path. Finally, granting privileges allows users to interact with the data at that location, ensuring a secure and ordered governance workflow.

  • ✗

    Create location, grant privileges, create credential.

    Why it's wrong here

    An external location requires an associated storage credential at the time of creation. You cannot define the location first without providing the necessary credentials for the system to authenticate with the cloud provider. The credential must exist as an independent object before it can be assigned to the location.

  • ✗

    Create credential, grant privileges, create location.

    Why it's wrong here

    You cannot grant privileges on a location that has not been created yet. The external location acts as the securable object within Unity Catalog; therefore, it must be fully defined before you can assign any access control lists or privileges to any users, groups, or service principals.

About these practice questions

This Databricks-DE-Assoc question is part of Courseiva's 276-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Databricks exam blueprint

This Databricks-DE-Assoc practice question is part of Courseiva's free Databricks certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the Databricks-DE-Assoc exam.