Use a user account to run the SAP Mobile Platform Windows service, rather than a local administrator account. This limits the amount of damage an attacker can cause to your entire system.
By default, the SAP Mobile Platform Windows service runs under a local administrator account. Local administrators have many Windows permissions that are not required for SAP Mobile Platform. For example, local administrators can change files under Program Files and System32 directories, and can modify registry entries. If SAP Mobile Platform Server is compromised by an attacker, the attacker will be able to exploit these additional administrator permissions to damage your system. By running SAP Mobile Platform under a user account, which has fewer permissions, you limit the damage an attacker can cause.