- Job title
- System support specialist
- Sector
- Packaging
- Organization type
- 300-person organization
- Joined
- Jul 2025
- Message
- 14
I work on my computer using the Admin account. Do I need to use a restricted account for personal tasks?
I work on my computer using the Admin account. Do I need to use a restricted account for personal tasks?
Using the Admin account for daily tasks is very risky. If malware is installed, the whole system gets compromised. Protocol: Use the Admin account only for system changes, use a User account for daily work.
we made a separate work account and closed admin access for work. like yeah it's a bit of a pain but security is better
edit: I wrote something wrong above, sorry about that.
On Windows: 1. Create a separate Admin account 2. Create a User account for daily tasks 3. Set a strong Admin password 4. Done
Doki · Phishing awareness training · 2026
User Access Control (UAC) on Windows requires approval for Admin actions. Even if you work on a daily User account, it provides sufficient protection.
You're right. Everything goes well for the first three months; problems arise in the fourth.
This is my opinion, I'm not claiming it's absolute truth.
We need to make a distinction here. Mistakes made on the admin account usage side are usually reversible but expensive.
Security isn't absolute; it's about making attacks not worth the effort. That's all sorry if I went on too long.
Doki · Log management setup · 2026
I feel the same way. Having backups accessible on the same network and with the same identity makes them part of the target.
Hasty decisions become decisions you have to fix six months later. This is my opinion, I'm not claiming it's absolute truth.
You're right, I've been down that road too. If you get three different answers on a topic, the question was asked wrong.
This is my opinion, I'm not claiming it's absolute truth.
I went through the same thing two years ago. When we decide without measuring, we always end up in the same place.
Your time to detect an issue directly determines its cost. This is my opinion, I'm not claiming it's absolute truth.
Let me write how it's done in practice. The answer varies greatly by industry; there is no one-size-fits-all rule.
I'm also curious if anyone does it differently.
Let me share my experience... Processes without records never improve because you dont know what to fix.
If I understood correctly, you're saying: Everyone rushing into admin account usage gets stuck at the same point.
If you get three different answers on a topic the question was asked wrong. If you have questions write them; I'll answer as best I can.
i've been dealing with this for a long time. security isn't absolute; it's aobut making attacks not worth the effort.
im also curious if anyone does it differently.
I partly agree, partly disagree. When you try to change everything at once, nothing settles.
Hasty decisions become decisions you have to fix six months later.