Anyone with the same issue, this is what FIXED it for me.
Manual Key Enrollment (The “Enroll EFI” Method)
Manually point the BIOS to the Windows boot file to tell it, “This file is safe.”
In BIOS, go to Security -> Secure Boot -> Key Management.
Look for an option called Enroll EFI Image or Authorized Signature (DB).
It will open a file browser. Navigate through your drive (usually labeled FS0:) to:
EFI\Microsoft\Boot\bootmgfw.efi
Select that file and confirm you want to add it to the allowed database.
Save and Exit.