Enabling Azure resource-specific admin accounts can reduce an organization's ability to protect itself against account or service account thefts. Full Administrator permissions fail to correctly separate duties and create potentially critical attack vectors on the impacted resources. In case of abuse of elevated permissions, both the data on which impacted resources operate and their access traceability are at risk.