When someone requests elevated privileges within SQL Server, who should be the final decision maker as to whether the request is necessary and justifiable?

Security policy may include any of these answers as one of the gateways for approving requests for elevated privileges. Ultimately though, the DBA is the designated protector of the data and as such should be the final say-so for whether or not the permissions request is necessary and justifiable.