April 12, 2024, 11:52 a.m. | /u/Equal-Swordfish3662

cybersecurity www.reddit.com

I have a question about permissions for admin users in a fairly large organization with over 10,000 users. Currently, we operate with one admin account per person, granting high privileges across various systems like Azure, Intune, and on-premises infrastructure (we are not global admins).

I understand the principle that privileged accounts should refrain from directly accessing regular user workstations to minimize security risks. Thus, my plan is to create separate accounts for different tasks. One account would handle domain-level activities …

account accounts active directory admin azure cybersecurity directory global high infrastructure intune large organization permissions privileged privileged accounts privileges question systems understand

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote