On deploying the Policy for Essential 8
Unprivileged accounts cannot logon to privileged operating environments.
We added the Azure AD Entra group Privileged Users to this rule we got a 65000 Error Intune
Workaround
Deny Guests group and add the Privileged Users group to this guests group

