1. This is untrue, connecting with RPC over HTTPS is just as secure as VPN
2. Using a single site to site VPN would be more efficient than 27 single VPN connections.
3. See #2
4. If you use a site to site VPN, only the traffic destined for the remote side will be sent over the VPN. Normal LAN traffic should not be affected at all in a proper VPN setup.
So the easiest solution is to have Outlook Anywhere enabled on the Exchange server and set the Outlook clients to use RPC over HTTPS in the connection setup.
Failing that, a router to router VPN would allow continuous connectivity to the Exchange server from your LAN.