The practical starting point
An account permission that made sense during a project may remain after the work moves to someone else. Use a role change as a reason to review access. Start with the responsible service owner and the actual tasks each person still needs to perform.
A workable next step
Record proposed changes before applying them, following the organisation’s authorisation process. Avoid removing the only recovery route or relying on a shared personal login. Review the result with the people responsible for ongoing work. The goal is a current, understandable access arrangement, supported by evidence rather than a vague promise that old accounts were cleaned up.
Keep in your notes
- Review current responsibilities.
- Preserve authorised recovery.
- Document the resulting access.
