One of our client's user accounts is getting sign in logs every so often from a different state across the country.
The sign in is showing with all the same details as his Azure Ad Joined autopilot laptop(Device ID is the same - using Windows Hello), there is no pattern for the sign in's, the user does not have a VPN in office or at home - The sign in IP's for the office and for his home address are consistent and we can clearly see when they are at either of those locations, they do not use their hotspot often if at all.
No one else in the office is showing sign in's from these locations.