Thanks Jay, this is helpful!
Regarding the challenges with mobile users, I was just referring to how disruptive a password change event can be. It's bad enough when a user is on-prem; change password, true-up your MFA with all the O365 resources, update password on all your mobile devices, true-up MFA on those, etc. If a user is remote they have to follow very specific steps in the proper sequence when updating their password, in order to ensure their computer receives the updated credential and updates their offline profile accordingly.
Updating your password has just becoming increasingly difficult for non-technical employees now that their data and resources they access is mixed between on-prem and the cloud, many of them have multiple mobile devices, then throw in MFA, SSO and maybe a VPN and they tend to get confused. :smileylol:
Thanks again for the guidance! These a good suggestions which will help with our upcoming enforcement of Azure AD Password Protection!