I suggest you read up on Zero Trust. Corporate networks often aren’t any more hardened than the average home router NAT device. VPN done right is no less secure on a home network because you control the endpoints you let connect. But the best plan is not using VPN at all, and instead authenticating the person and device on a per service basis.