Hi, @Skipper Of Odyssey
Thank you for posting in Microsoft Q&A forum.
Since you are using SCCM to deploy the windows updates, so check your client setting to see if the Suspend BitLocker PIN entry on restart is set to "Always"? If so, we may change it to "Never".
By the way, for SCCM update related issue, we may use the tag mem-cm-updates.
If the response is helpful, please click "Accept Answer" and upvote it.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.