- Cyber Safety
- Posts
- Your SaaS Admin Accounts Are Prime Targets
Your SaaS Admin Accounts Are Prime Targets
Blu Dot surpasses 2,000% ROAS with self-serve CTV ads
Home furniture brand Blu Dot blew up on CTV with help from Roku Ads Manager. Here’s how:
After a test campaign reached 211,000 households and achieved 1,010% ROAS, the brand went all in to promote its annual sales event. It removed age and income constraints to expand reach and shifted budget to custom audiences and retargeting, where intent was strongest.
The results speak for themselves. As Blu Dot increased their investment by 10x, ROAS jumped to 2,308% and more page-view conversions surpassed 50,000.
“For CTV campaigns, Roku has been a top performer,” said Claire Folkestad, Paid Media Strategist, Blu Dot. “Comping to our other platforms, we have seen really strong ROAS… and highly efficient CPMs, lower than any other CTV partner we've worked with.”
Using Roku Ads Manager, the campaign moved from a pilot to a permanent performance engine for the brand.
One Admin Account Can Control an Entire Business Platform
Email, CRM, HR, finance, cloud storage, and collaboration platforms often concentrate enormous power inside a small number of administrator accounts.
Admin Access Can Be More Valuable Than Malware
An attacker who compromises a SaaS administrator may be able to create users, reset passwords, change security settings, access sensitive data, or disable protections — all through legitimate functionality.
Your SOC 2, handled end to end with AI agents.

Enterprise buyers will not put your product near their customer data without a SOC 2 report. Sprinto gets you audit ready in 14 days, across three working sessions. AI agents do the collecting, you approve. Your auditor signs off.
Permanent Admin Privileges Create Permanent Exposure
Employees often receive elevated access for a specific task and keep it indefinitely. Over time, organizations accumulate far more administrators than they actually need.
Admin Accounts Shouldn’t Be Used for Everyday Work
Browsing email, opening documents, or performing routine tasks from privileged accounts unnecessarily exposes
Every Administrative Action Should Be Visible
New users, permission changes, MFA resets, security-policy modifications, and data exports should generate logs and, for particularly sensitive actions, alerts.
Make Privilege Temporary, Rare, and Highly Visible
Separate administrative identities from normal accounts, enforce phishing-resistant MFA, use just-in-time access where possible, review privileges regularly, and monitor high-impact actions. The fewer permanent administrators you have, the fewer keys attackers can steal.
Leave Granola and get up to 12 months free of Wispr Flow Notetaker + Dictation
If you have paid time left on an individual Granola plan, we'll match it with a Wispr Flow subscription that includes Notetaker and dictation, and add bonus time, up to 12 months total. Sign in or create a Wispr account and submit proof of your plan to check eligibility.


