Hi @danielmitu
Once the user is part of SAS Administrators group, I don't think you can add explicit deny permissions for that user.
If your requirement is that user should see all the other plugins except server manager and user manager, then you can create a custom role and deny these capabilities to this role and add the user to the role. see if that helps you to manage your case.