That's a good question. While I have no experience with Enterprise notebook security, I'd stay away from any Enterprise notebook with a TPM chip. IMO it's a complexity nobody needs. However, AIUI the feature can be disabled from within the BIOS.
While you're shopping remember this; you can never have too much memory :p