Your comments

Omg yes this. Without this my staff needs an extra AD group applied directly to their user object, as opposed to nesting my CWC permissions groups within their role groups. Please do the needful!