Ensure That Separation of Duties Is Enforced While Assigning Service Account Related Roles to Users
Separation of duties means that an individual should not have enough permissions that will enable him to complete a malicious action. Users should not have both the abilities to create and to use a service account. This might lead them to access resources that they should not have in the first place.
Updated 7 months ago