I have noticed inspectors require admin level permission to gather information from their respective devices. Can this be changes to use Read only/SNMP Read only permissions to further tighten down security on these devices? I currently setup Liongard for Sonicwalls using the read only admin role for just this reason.
If threatIQ is being used, then the documentation can state what changes permission wise are needed for the account for that to work. again it should be as minimal of permissions as possible, not full admin rights.