Dave Hornbaker from Deployment Guys wrote a script some time ago, that kicks off MBAM encryption of the hard drive. It can be found here:
As time goes, there are new features in SCCM and MDT as well as in Bitlocker and MBAM.
One of two things that the original script does not address is pre-provisioned Bitlocker in SCCM 2012 SP1 (It's actually, a feature of Windows 8 and Windows PE 4). What it means, that once you started the encryption with "Pre-provision Bitlocker" (it actually calls Manage-bde -on %OSDisk% -UsedSpaceOnly), your system hard drive is encrypted right off the bat, and while applying the image, your data becomes encrypted automatically.
The second thing is Windows To Go. Here is the article, that describes how to create a pre-staged media for Windows To Go: http://technet.microsoft.com/en-us/library/jj651035.aspx. There are a couple issues with WTG and SCCM:
I'm providing two VB scripts, ZTIPrepareBDE.wsf and StartMBAMEncryption.wsf.
I also included a version of SCCMWTGDuplicator.ps1 script that replaces WTGCreator.exe from SCCM. This script requires all boot files from WTG stick created with original WTGCreator.exe - simply copy all files to Boot directory. This script asks for WIM file with pre-staged media and lists all USB drives and then provisions them with WTG.
Enjoy and let me know if you have any questions :)
Credits go to my colleagues:
Dave Hornbaker, who created the original StartMBAMEncryption.wsf script
Michael Murgolo, who improved this script
Michael Niehaus, who inspired me on those kind of things :)
Lance Crandall, who worked with me educating me on best approaches with my script and without his input it would not be possible.