A privileged account is any account which carries more privileges than a standard user account.

For example, a standard user account may enable someone to login and send an email under their name. But a privileged account may allow for not only email sending, but also user administration, user billing inforomation access, and users’ private profile information such as name, address. Phone number, SSN, etc.

Per our mention in our guide of JIT, ZSP, and LPA, its best to keep privileged accounts at ZSP until JIT, LPA is required.

Keeping an account at a standing, high privileged state at all times is a security risk.

