Navigate to the Organizational Unit (OU) where the specific computer object is stored.

If PowerShell is not available or restricted, the classic dsquery tool can extract the password attribute.

Replace <ComputerName> with the name of the computer that has the BitLocker-encrypted drive.

This piece assumes Windows Server 2016+ and Windows 10/11 clients with standard AD schema extensions for BitLocker (present by default in domain environments).