The general idea is that you have 5 different keys. Owner outranks active, active outranks posting, posting outranks memo. If posting is compromised, but you still have owner or active, then you can always change your posting key back under your control.
So, yes, if you only login with your posting key AND your active / owner key is different, you are much safer.