Run users with the least privileges possible, and elevate applications controls only when needed.
Privilege Authority lets administrators establish what aspects of Windows users can manage without making them local Admins. By defining elevation rules within Privilege Authority, user rights can be set at the appropriate level and users privileges will automatically be elevated for those specific actions now requiring administrator access.