We are excited to announce that PrivateLink and using customer-managed keys (CMK) for encryption are now Generally Available (GA) for Databricks on AWS! We know that data is your most valuable asset, and the GA of these two key security features will deliver additional control and protection of your data - at rest and in transit - on the Databricks Lakehouse Platform.
PrivateLink and customer-managed keys are two of the most sought after features for customers in highly regulated industries such as Financial Services and Health and Life Sciences. With general availability, customers can leverage PrivateLink and customer-managed keys in environments that require a GA guarantee, extending the benefits of the Databricks Lakehouse Platform to even their most sensitive use cases.
This blog will highlight the benefits of using PrivateLink and CMK for Databricks on AWS, including how to get started with these features today.
Many customers want the guarantee of private networking to ensure that their users can access data without exposing traffic to a public network. AWS PrivateLink provides a private network route from one AWS environment to another. Now, Databricks customers on AWS can configure PrivateLink between Databricks users and the control plane and between the control plane and the data plane. Using PrivateLink for Databricks on AWS provides the following benefits:
Databricks encrypts customer content at rest by default within our control plane, but some customers may prefer the ability to use customer-managed keys for added control. With AWS Key Management Service (AWS KMS), Databricks customers can now bring their encryption keys to protect data in managed services and workspace storage, such as notebooks, secrets, Databricks SQL queries, Databricks SQL query history, and EBS volumes.
Using customer-managed keys for Databricks on AWS provides the following benefits:
PrivateLink and customer-managed keys are available on the Enterprise pricing tier of Databricks on AWS. For step-by-step instructions on configuring these features for your Databricks workspaces on AWS, refer to our documentation (PrivateLink | CMK).
Please visit our Security and Trust Center for more information about Databricks security practices and features available to customers.