You are not required to use your phone number for 2FA. In fact, they discourage users from using SMS for 2FA.
Obviously, but I don't think they did good enough. Why enable SMS 2FA at all? It's horribly insecure.
In Google's Workspace Admin just got to:
Security -> Authentication -> 2-step verification
Then choose "Any except verification codes via text, phone call". This allows them to use TOTP, a security key such as a usb key or if they have a phone like a Pixel or iPhone that has a security key built in, or TOTP. They can also approve logins from another device that is already logged in, and can generate long-lived backup codes.
You can also allow only a security key, no TOTP or prompts and if, you do that, you can disable backup codes as well.