A company has created an organization within AWS Organizations that has all features enabled. Several resource accounts have been added to the organization. The security team requires that the privileges of root user accounts within the member accounts are restricted. How can the security administrator restrict usage of member root user accounts across the organization?