Direct corp net access from the phone isn't generally the risk here - typical BigTech corp employees carry a 2fac generator on their work phone, and that is supposed to secure access to both the corp net and the 3rd party password manager in which the corp net passwords are stored