The UTXOs are the thing to keep separate, as this is what is used for chain surveillance.
If this separate account generates separate addresses that never interact with the KYC addresses , then this is acceptable as far as I'm aware. So long story short, yes. Once you get your new hardware wallet ,coldcard for example, it will be easier to implement what others have suggested here, ie. custom derivation , passphrase.
I personally think a custom derivation is unnecessary and complicated, a simple passphrase is more than sufficient in order to separate funds.