I think you are over thinking the cache bits. It doesn't matter if it's PVS or MCS, you need a healthy and .unique. cache per VM. Unique is important and is what caused a LOT of problems before the new switches were brought in to make sure that the Cache is unique to each VM at the right time. It used to be easy to just say "for PVS, persist the cache" because it was kind of hard to do that in MCS. Additionally, If you stuck the Cache on the MCS base image C drive and then provisioned it out - uh oh, it's no longer unique and the algorithm would not process things properly (you would have stale settings until the next proper refresh when things got made unique again - this could be a 30 minute delay and it was randomised).
Now it doesn't matter, the agent itself if configured properly, has the ability to ensure a unique cache regardless of the location. I do suggest that as part of startup though (with BIS-F), that if you have any issues in an environment, then force the refresh to occur on machine startup so it's ready for the user.
For point 2, WEM should be processing those filters very very fast, there shouldn't be much difference between filter rules processing and direct assignment, in my experience, the difference is so tiny its barely noticeable. If you have processing delays on either, then there could be other things going on with either config, or Directory Services. You would have to have a ridiculous amount of filters for it to be taking a long time in a healthy environment based on my experience.
For point 3 - "_Use Cache to Accelerate Actions Processing"_ This only accelerates actions assigned to the users, it means WEM doesn't need to reach out to the service and get the info in a back and forth fashion. The point around not having a cache is not really a valid one, because if you don't have that cache, there is something wrong already. This setting makes a MONSTER difference, but again, doesn't apply to everything that WEM processes, just action processing
For GPO processing, I will leave to the brains trust to comment as I don't have a use case to use it. GPO, if ADMX based and not needing advanced filtering or targeting, is pretty bloody efficient. I don't see the point in moving it all around unless there is a clear need. Sure WEM can do it, but again, if you don't have the advanced GPO targeting requirement that WEM brings in, then why move it at all? You won't see logon differences from ADMX configurations being moved, you will sure as hell see an improvement from CSE based settings being stripped out 🙂
If you have no GPO/AD environment and you need GPO settings applied (AzureAD joined etc), then WEM is the go in that space