During initial setup of both JIRA and Confluence, the applications obviously require database accounts with the permissions to create database object. After the setup has been completed, do these accounts continue to require these database object permissions? Can the account permissions be reduced to select/delete/update? This comes with the understanding that upgrades, installation of additional add-ons, or other system admin changes may require these elevated permissions temporarily.
The reason I am asking is that my company's security policy does not allow process accounts to have DB object permissions without an exception.
Specifically, I am using Oracle for both JIRA and Confluence.