# Databricks Boosts Security, Compliance _Databricks announces major security and compliance updates, including Automatic Identity Management, Private Network Gateway, and expanded global certifications._ **Published:** 2026-06-17 **Source:** https://www.startuphub.ai/ai-news/technology/2026/databricks-boosts-security-compliance --- Databricks is rolling out significant enhancements to its [Platform security and compliance](https://www.databricks.com/blog/whats-new-databricks-platform-security-and-compliance-data-ai-summit-2026) at the Data + AI Summit 2026. These updates address the growing challenge of securing AI innovation without introducing new risks, particularly as organizations scale their data and AI initiatives. Scaling AI RisksDriver organizations scaling data and AI initiatives introduce new risksFrom the articleThese updates address the growing challenge of securing AI innovation without introducing new risks, particularly as organizations scale their data and AI initiatives.Private Network GatewayCorestreamlined private connectivity for serverless deploymentsFrom the article 5 mentionsThe new Private Network Gateway simplifies secure connectivity for serverless and operational workloads.Expanded Global ComplianceEffectbroader global certifications for enhanced trust and adherenceaddressesAutomatic Identity ManagementCoreautomates user, group, and service principal provisioning for accessFrom the articleKey introductions include Automatic Identity Management (AIM) for Entra ID, now generally available on AWS and GCP, with AIM for Okta in public preview.Context-Based IngressCorezero-trust access policies for specific Databricks experiencesFrom the articleContext-Based Ingress (CBI) is now in public preview across AWS, Azure, and Google Cloud.enablesSecure AI InnovationEffectFrom the article 4 mentionsCBI enables secure exposure of AI Gateway endpoints to external networks while maintaining broader workspace protection.supportsEnhanced Platform SecurityOutcomemajor security and compliance updates rolled outFrom the articleDatabricks is rolling out significant enhancements to its Platform security and compliance at the Data + AI Summit 2026. Key introductions include Automatic Identity Management (AIM) for Entra ID, now generally available on AWS and GCP, with AIM for Okta in public preview. This automates user, group, and service principal provisioning, crucial for managing access to tools like Genie and AI applications. ## Scaling AI Security with Context-Based Access Context-Based Ingress (CBI) is now in public preview across AWS, Azure, and Google Cloud. This feature allows administrators to implement flexible, zero-trust access policies for specific Databricks experiences, such as Genie and dashboards, without exposing the entire platform. CBI enables secure exposure of AI Gateway endpoints to external networks while maintaining broader workspace protection. Inbound Private Link support for account-level resources, including Genie and the account console, will be available in beta by late June 2026. ## Streamlined Private Connectivity for Serverless The new Private Network Gateway simplifies secure connectivity for serverless and operational workloads. This capability extends serverless functionality to private data sources, APIs, and enterprise applications via a single, secure connection, eliminating complex network architectures. Private Network Gateway is currently in private preview on Azure Databricks. Additionally, private connectivity for Lakebase, Zerobus, and other services has expanded, with general availability on AWS and public preview on Azure, ensuring network isolation for high-throughput operational and AI workloads. ## Expanded Global Compliance Footprint Databricks continues to broaden its compliance coverage across all major cloud providers and regulated industries. Serverless organizations on Azure can now leverage the same compliance posture available on classic compute, with similar AWS Serverless coverage planned for later this summer. New compliance support includes Saudi Arabia’s National Cybersecurity Authority frameworks (CCC, DCC, ECC) on Google Cloud, expected later this month. HITRUST coverage is now available across AWS, Azure, and Google Cloud, providing greater flexibility for healthcare organizations. Earlier this year, Databricks achieved ISMAP certification for Japan’s public sector on Azure and AWS. AWS GovCloud support has expanded for AI and analytics features, including Databricks Apps and Model Serving. Furthermore, FedRAMP High support on Azure Commercial is anticipated later this summer, enhancing compliance for public sector and regulated organizations. --- Original analysis from [startuphub.ai](https://www.startuphub.ai), the #1 AI startup directory.