@J-3804, Thanks for posting in Q&A.
For the error Your device is already connected to your organization, here are some steps you can try to fix the issue.
This error typically indicates that the device is already registered or has remnants of a previous enrollment. To resolve this:
On the device, navigate to Settings > Accounts > Access work or school. If an account is listed, select it and click Disconnect.
Run the command dsregcmd /status in Command Prompt to check the hybrid join status. Ensure both AzureAdJoined and DomainJoined are set to YES. If above are correct, but issue still exist, please consider running command dsregcmd /leave
After executing the above command, restart the device and attempt the enrollment process again, also ensure the MDM user scope is set to All and the MAM user scope is set to None in Intune portal and Group Policy set to Device Credential.
For the error You don't have enough privileges to perform this operation. Please talk to your admin, this issue occurs if the account that you use to log on to Windows isn't a member of the local Administrators group.
Here is a link with solution you can refer to.
To enroll a device as corporate owned device via work or school account, please ensure you click Join this device to Microsoft Entra ID
Hope above information can help you.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.