This objective requires your organization to identify and document all authentication methods used to access systems that store, process, or transmit Controlled Unclassified Information (CUI). This includes both user and system-to-system authentication types, across all access points.