Let say,
Your organization recently experienced multiple password spray attempts against remote users accessing Microsoft Entra ID integrated applications. Leadership wants MFA enforced, but only for users accessing resources externally to avoid disrupting internal office...