Microsoft somewhat already did the work needed to migrate of windows by making Active Directory and Group Policy irrelevant.
With office 365 and intune you can essentially have the same control as traditional AD joined machines actually Intune probably has better management than GPO these days.
The only thing that is still missing for corpo is Intune for Linux and even that isn’t 100% required as long as there will be Intune for Edge on Linux, once you can manage the browser the majority of the controls the organization needs are handled.