@Redistro, Thanks for posting in Q&A. For the error message, it seems the error is with the CSP "SystemDrivesRequireStartupAuthentication". For this policy setting, it allows you to configure whether BitLocker requires additional authentication each time the computer starts and whether you are using BitLocker with or without a Trusted Platform Module (TPM).
It seems we have configured "additional authentication at startup" as required. If we configure to silently enable BitLocker on the device, please ensure a TPM startup PIN or startup key is not set as required on a device. And also ensure the setting meets our situation.
https://learn.microsoft.com/en-us/mem/intune/protect/encrypt-devices#tpm-startup-pin-or-key
Please check the above information and if there's any update, feel free to let us know.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.