This image, from John Lambert, is a nice summary of several ‘Sins’ when it comes to security with Windows credentials. It would be foolish to assume that a strong password is all you need to maintain security with a complex organization. Instead, the image lists 6 sins that can weaken your environments security. Sins of mirror imaging, abdication, tradeoffs, incompleteness, wishful thinking, and hygiene can all lead to compromise.
Credit: https://twitter.com/JohnLaTwC/status/587289888560558080
Using a solution like LAPS can control the local administrator account to make sure each password is unique and changes often. Windows 10 introduces Credential Guard to protect credentials from being read from unauthorized software.