Why Haven’t You Disabled SA? Wrong Answers Only.


On social media, I asked folks, “Why haven’t you disabled the SA account in your SQL Servers? Wrong answers only.” The results were pretty funny:

“I went a step further and also created an account called ‘as’. Now my boss keeps bragging to his golf buddies that we run our database fully SaaS.” – Hugo Kornelis

“How else can I provide job security for the cybersecurity team?” – Evgeny Alexandrovich

“Because it matches the password of sa.” – Jamie Ridenour

“Oh you can create another account in SQL Server? Mind blown.” – Justin Adrias

“Why would I disable the