This objective ensures that your organization defines which roles must be kept separate to prevent conflicts of interest, reduce insider threat risk, and ensure strong internal control. It’s about documenting where segregation of duties is needed across your information systems—particularly where Controlled Unclassified Information (CUI) is concerned.