Is this just because your DNS is with some provider, or is it something that leads from your organizational structure?

If it's just because your DNS is at a provider, you should be aware that it's possible to self-host DNS.

It’s internal policy. We do run our own DNS.

But that's pretty much self-inflicted damage.