In the case of Macs with M processors or T chips, encryption key is part of the Secure Enclave.
And when FileVault is turned on on these Macs, like non-T Intel Macs, the new password is used to encrypt an intermediate encryption key that decrypts the system key.
User PW -> decrypt intermediate key -> decrypt system key -> decrypt drive