New integration automates data policy enforcement to ensure compliance without slowing down AI, analytics, and data initiatives
OneTrust, the platform helping organizations use data and AI responsibly, announced the expansion of its partnership with Databricks, the Data and AI company, with the launch of its new Data Policy Enforcement product integration. The integration enables data governance teams to automate data policy enforcement with Unity Catalog and keep up with the speed at which AI-driven systems process and utilize data.
AI doesn’t wait for manual approvals — it operates in real time, meaning that governance mechanisms must be just as fast and seamless. Some datasets are open access, requiring little to no oversight, while others, like personal data, must be governed with accuracy, purpose, and consent. Organizations need the ability to predefine conditions, rules, and policies that regulate AI-ready datasets. This includes creating and monitoring data contracts that explicitly define how data can be used based on the purpose of use, as well as regulatory and privacy frameworks.
“OneTrust is solving the enforcement challenge for both data and compliance teams by turning regulatory, privacy, and compliance requirements into machine-readable policies that can be enforced in real-time,” said Blake Brannon, Chief Innovation Officer at OneTrust. “Our integration with Databricks gives compliance and privacy teams the confidence to approve new data and AI use cases—knowing controls are automatically applied at the point of data use. Together, OneTrust and Databricks enable organizations to unlock innovation while maintaining continuous compliance and reducing risk.”
Also Read: Guardz Secures $56M for AI-Powered SMB Cybersecurity Platform for MSPs
The OneTrust Data Policy Enforcement product integration orchestrates enhanced policy enforcement by Unity Catalog across the Databricks Data Intelligence Platform, ensuring consistent, programmatic control of data. For instance, when an AI model requests access to credit history data, OneTrust automatically blocks sensitive attributes like race and gender, applies dynamic access controls, and flags and remediates potential regulatory risks before violations occur.
The OneTrust Data Policy Enforcement integration programmatically applies native data controls enforced by Databricks Unity Data Catalog to achieve:
- Consent-based row filtering: When employees, approved agencies, or partners query customer data, rows are automatically filtered based on customer consent status and the purpose of the query.
- Column masking: Sensitive personal data is automatically masked based on the user’s role and declared purpose.
- Cross-platform orchestration: OneTrust connects every layer of your modern data architecture to a single source of policies for data policy enforcement orchestration. Once registered in OneTrust, data policies are shared and applied consistently across all applications and platforms used to achieve an end-to-end data processing, including processing across different Databricks instances as well as between Databricks components and components on other data platforms from other providers.
“We are thrilled to partner with OneTrust to deliver a solution that will enable customers to accelerate innovation without compromising compliance,” said Roger Murff, VP of Technology Partners at Databricks. “By combining OneTrust’s pioneering automated data policy enforcement with the powerful Databricks Data Intelligence Platform, we’re bridging the enforcement gap for AI-ready data. Together, we’re enabling organizations to unlock the potential of their data.”
Source: PRNewswire