What Do We Mean By Least Privileged?
The best way to restrict access and minimize cross exposure is by implementing a two-tier system. The first tier consists of only allowing those who need it, while the other users are limited in their viewings significantly with time restrictions on what they may see as well as which reports, or other materials provide them no more than 20% of total information about company operations overall.
The key here though isn`t just restricting certain people`s visibility into proprietary data; rather, we want everyone - even those without clear responsibilities for doing so –to understand where sensitive material lies within your organization.