<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Security and vulnerability for Azure databricks clusters in Data Plane in Administration &amp; Architecture</title>
    <link>https://community.databricks.com/t5/administration-architecture/security-and-vulnerability-for-azure-databricks-clusters-in-data/m-p/56342#M717</link>
    <description>&lt;P&gt;Hi Aria,&lt;/P&gt;&lt;P&gt;can you check &lt;A href="https://www.databricks.com/trust/trust" target="_self"&gt;this link&lt;/A&gt;?&lt;/P&gt;&lt;P&gt;Basically Databricks checks for vulnerabilities and does pentesting etc.&lt;/P&gt;&lt;P&gt;&lt;EM&gt;"Databricks will use commercially reasonable efforts to address critical vulnerabilities within 14 days, high severity within 30 days, and medium severity within 60 days measured from, with respect to publicly declared third party vulnerabilities, the date of availability of a compatible, vendor-supplied patch, or for internal vulnerabilities, from the date such vulnerability is confirmed. Databricks leverages the National Vulnerability Database’s Common Vulnerability Scoring System (CVSS), or where applicable, the U.S.-Cert rating, combined with an internal analysis of contextual risk to determine criticality."&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 03 Jan 2024 09:07:20 GMT</pubDate>
    <dc:creator>-werners-</dc:creator>
    <dc:date>2024-01-03T09:07:20Z</dc:date>
    <item>
      <title>Security and vulnerability for Azure databricks clusters in Data Plane</title>
      <link>https://community.databricks.com/t5/administration-architecture/security-and-vulnerability-for-azure-databricks-clusters-in-data/m-p/56319#M716</link>
      <description>&lt;P&gt;Microsoft defender is not supported for azure databricks clusters. Can someone point me to a document which describe how the security vulnerabilities are reported and fixed for azure databricks clusters in data plane.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jan 2024 20:43:14 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/security-and-vulnerability-for-azure-databricks-clusters-in-data/m-p/56319#M716</guid>
      <dc:creator>Aria</dc:creator>
      <dc:date>2024-01-02T20:43:14Z</dc:date>
    </item>
    <item>
      <title>Re: Security and vulnerability for Azure databricks clusters in Data Plane</title>
      <link>https://community.databricks.com/t5/administration-architecture/security-and-vulnerability-for-azure-databricks-clusters-in-data/m-p/56342#M717</link>
      <description>&lt;P&gt;Hi Aria,&lt;/P&gt;&lt;P&gt;can you check &lt;A href="https://www.databricks.com/trust/trust" target="_self"&gt;this link&lt;/A&gt;?&lt;/P&gt;&lt;P&gt;Basically Databricks checks for vulnerabilities and does pentesting etc.&lt;/P&gt;&lt;P&gt;&lt;EM&gt;"Databricks will use commercially reasonable efforts to address critical vulnerabilities within 14 days, high severity within 30 days, and medium severity within 60 days measured from, with respect to publicly declared third party vulnerabilities, the date of availability of a compatible, vendor-supplied patch, or for internal vulnerabilities, from the date such vulnerability is confirmed. Databricks leverages the National Vulnerability Database’s Common Vulnerability Scoring System (CVSS), or where applicable, the U.S.-Cert rating, combined with an internal analysis of contextual risk to determine criticality."&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jan 2024 09:07:20 GMT</pubDate>
      <guid>https://community.databricks.com/t5/administration-architecture/security-and-vulnerability-for-azure-databricks-clusters-in-data/m-p/56342#M717</guid>
      <dc:creator>-werners-</dc:creator>
      <dc:date>2024-01-03T09:07:20Z</dc:date>
    </item>
  </channel>
</rss>

