• Grant,

    I read at brentozar.com:

    http://www.brentozar.com/blitz/jobs-owned-by-user-accounts/

    http://www.brentozar.com/blitz/database-owners/

    So would you recommend striving towards not using SA (possibly even renaming/disabling it), and creating new accounts that are least privilege for specific purposes?

    I've always setup the Windows service accounts in this way, but not so much for jobs and db owners (I did run into the scenario Brent presents where IT had disabled an old user account that had been used for running a handful of jobs)

    Why is it that people who can't take advice always insist on giving it? - James Bond, Casino Royale