cancel
Showing results forย 
Search instead forย 
Did you mean:ย 
Community Articles
Dive into a collaborative space where members like YOU can exchange knowledge, tips, and best practices. Join the conversation today and unlock a wealth of collective wisdom to enhance your experience and drive success.
cancel
Showing results forย 
Search instead forย 
Did you mean:ย 

Governance RiskOps Agent for Unity Catalog

WiliamRosa
Databricks Partner

Body:

Every day, data platforms generate thousands of audit events. But here's the problem: security teams are drowning in noise.

Critical risks hide in plain sight. Manual investigations take hours. Compliance gaps surface too late. And there's no intelligent way to prioritize what matters.

I built a solution to fix this.

๐Ÿš€ Introducing the Governance RiskOps Agent

An automated risk detection system for Databricks Unity Catalog that transforms raw audit logs into actionable security insights.

How it works:

โœ… Continuous Monitoring โ†’ Ingests and enriches Unity Catalog audit events in real-time

โœ… Smart Risk Scoring โ†’ Multi-dimensional algorithm scores every event from 0-100 using 9 risk factors: โ€ข Action type & permission level โ€ข Data sensitivity classification โ€ข After-hours access patterns โ€ข Privilege changes & cross-domain access โ€ข Failed attempts & external sources

โœ… Actionable Findings โ†’ Not just alerts. Each finding includes: โ€ข Exact risk score & severity (CRITICAL/HIGH/MEDIUM/LOW) โ€ข Full context (who, what, when, why) โ€ข Specific remediation steps

The Architecture:

๐Ÿ—๏ธ Medallion pipeline (Bronze โ†’ Silver โ†’ Gold) โ€ข Bronze: Raw audit event ingestion โ€ข Silver: Normalization + dimensional enrichment โ€ข Risk Engine: 15+ detection rules with sophisticated scoring โ€ข Gold: 4 analytical tables ready for consumption

๐Ÿ“Š AI/BI Dashboards with executive metrics (Governance Risk Index, critical findings, risky users)

๐Ÿ’ฌ Genie Space integration for natural language investigation (no SQL required)

Real Impact:

In our demo with 327 realistic events, the system detected: โ€ข 86 CRITICAL findings (score 75-100) โ€ข 106 HIGH risk events (score 50-74) โ€ข 105 MEDIUM risk events (score 25-49)

Investigation time: from hours to minutes.

Production-Ready:

โœจDeploys with Databricks Asset Bundles in a single command โœจ Open-source and enterprise-ready โœจ Works today with your Unity Catalog audit logs

๐ŸŽฅ Watch the 5-minute demo video to see the full solution in action โ†’ [Link to video]

๐Ÿ’กThis project was built for the DAIS 2026 Community Virtual Contest.

Wiliam Rosa
Data Engineer | Machine Learning Engineer
LinkedIn: linkedin.com/in/wiliamrosa
0 REPLIES 0