A civic tiered-administration model exists on paper, yet operators routinely use Domain Admin credentials inside ordinary email and browsing sessions. What concept should the finding stress?
Select an answer to reveal the explanation.
Short Explanation
Tiering is the clean-room rule: vault keys stay out of the break room. Logging into Outlook as Domain Admin drags those keys through phishing and malware land. Keep privileged work on hardened, dedicated paths.
Full Explanation
Privileged access models expect high-value credentials to be used only on appropriately hardened, higher-trust systems. Using Domain Admin on routine email and web browsing expands theft and phishing exposure. Paper tiering without operational adherence fails in practice. Email clients do not magically isolate directory admin tokens from lower-trust host risk.