This is correct, in some organisations VM infrastructure is administered by a dedicated member of staff (VSphere, ESXI Hypervisor and VCenter etc). In our situation this allows the VM administrator full access tot he host which we don't want to allow, ideally they can administer the VM infrastructure but cannot access the underlying OS in this case then LEM.
Matt