No need to lock out the system admins. In fact, the attacks I've come across usually lie stealthily in wait to spring at a future time. We've also found malware which was inserting and redirecting emails while leaving the system in normal operation enough so as to not attract attention to the...