Yup that is normal functionality. If you have an account that belongs to the administrators group you can think of it as two accounts with the same name.
During normal operation your account runs as a member of the "Users" group. When you run an operation that requires elevated rights, after the UAC process the given process will run with a different security token that has administrative rights.