Data security uses defense-in-depth with clear architectural layers. WHY: Single-layer security fails; compliance (SOC2, HIPAA, GDPR) mandates layered controls. AUTHENTICATION: Integrate IdP (Okta, Auth0) or IAM; enforce MFA for production. AUTHORIZATION: RBAC—roles...
This easy-level General/Other question appears frequently in data engineering interviews at companies like Fragma Data Systems. While less common, it tests deeper understanding that distinguishes strong candidates.
Start by clearly defining the core concept being asked about. Interviewers want to see that you understand the fundamentals before diving into implementation details. Structure your answer with a definition, then explain the practical application with a concise example.
Data security uses defense-in-depth with clear architectural layers. WHY: Single-layer security fails; compliance (SOC2, HIPAA, GDPR) mandates layered controls. AUTHENTICATION: Integrate IdP (Okta, Auth0) or IAM; enforce MFA for production. AUTHORIZATION: RBAC—roles (analyst_read, engineer_write) with minimal permissions; column-level and row-access policies for PII. ENCRYPTION: At rest (AES-256) and in transit (TLS 1.2+). AUDITING: Access logs, CloudTrail, lineage. MASKING: PII tokenization for non-prod. SCALABILITY: Role sprawl grows with org—use attribute-based access (ABAC) for large scale; automated access reviews. COST: Key management (KMS) adds minimal latency; over-permissioned roles increase blast radius and compliance cost.
This answer is partially locked
Unlock the full expert answer with code examples and trade-offs
Practice real interviews with AI feedback, track progress, and get interview-ready faster.
Pro starts at $24/mo - cancel anytime
Get the most asked SQL questions with expert answers. Instant download.
No spam. Unsubscribe anytime.
Paste your answer and get instant AI feedback with a FAANG-level improved version.
Analyze My Answer — FreeAccording to DataEngPrep.tech, this is one of the most frequently asked General/Other interview questions, reported at 1 company. DataEngPrep.tech maintains a curated database of 1,863+ real data engineering interview questions across 7 categories, verified by industry professionals.