Microsoft urges all corporations to move towards “Windows Hello for Business” and other security changes:
Microsoft is trying to remove passwords permanently as they tend to be more of a nuisance which gets neglected than a secure method of authentication. Typically users are frustrated by password resets which result in weak and reused passwords.
First get MFA enforced for high-risk/value groups like admins, HR, legal group and so on, and then move to all users
Check out the article: Microsoft’s CISO: Why we’re trying to banish passwords forever | ZDNet https://flip.it/Mv3YLR