It would be extremely beneficial to have single sign on from NCM to the managed devices. This will help unify the user access and can limit what users can make changes or can't on the network devices.We had an example of one use who doesn't have access to network switches with TACACS, but does have access to NCM and pushed a destructive job.
Thanks
Srini.