Skip to content

Enable TPM 2.0 & Secure Boot on HP / OMEN

HP and OMEN desktops open BIOS — your PC's settings menu before Windows starts — with Esc then F10, or F10 alone. You will enable TPM and Secure Boot, then confirm a short on-screen code after restart. Stay with the screen after you save; that code step is easy to miss the first time.

Quick Reference

Last verified · 10 Sept 2026

Difficulty & Time

Medium~5 min

BIOS Vendor

Phoenix SecureCore Technology / HP UEFI / OMEN Setup Utility

CPU Support

Intel 8th Gen, Intel 9th Gen, etc.

TPM Terminology

TPM DeviceEmbedded Security DeviceTPM State

Secure Boot Location

Security → Secure Boot Configuration (or Boot Options on OMEN)

Supported Chipsets

HP Standard Desktop / ProDesk / EliteDesk
Intel 8th–15th GenAMD Ryzen 3000–9000

Classic tab layout (Main, Security, Advanced). Secure Boot is under Advanced → Secure Boot Configuration.

HP OMEN / Victus Gaming Desktops
Intel 10th–15th GenAMD Ryzen 5000–9000

Graphical OMEN Setup Utility. Secure Boot is under Boot Options.

Step-by-step guide

Don't worry if your BIOS looks slightly different. Manufacturers often update colours and layouts, but the menu names are usually the same.

1

Enter BIOS

Turn on your PC and immediately tap Esc until the Startup Menu appears, then press F10. You can also tap F10 right after power-on. This opens the BIOS — your PC's settings menu before Windows starts.

Power On → Esc (Startup Menu) → F10
2

Enable TPM 2.0

Open the Security tab and turn on the TPM options Windows needs.

Security → TPM Device → Available; Security → TPM State → Enabled
  • Find TPM Device (or Embedded Security Device) and set it to Available.
  • Find TPM State and set it to Enabled.
3

Enable Secure Boot

Open the Secure Boot settings for your model and turn Secure Boot on.

Advanced → Secure Boot Configuration → Secure Boot → Enable
  • Pavilion / EliteDesk: go to Advanced → Secure Boot Configuration.
  • OMEN: go to Boot Options.
  • If you see Legacy Support, set it to Disable.
  • Set Secure Boot to Enable.

Important: After restart, HP often shows a 4-digit verification code. Type that code on the keyboard and press Enter. If the prompt disappears before you finish, Secure Boot turns back off — re-enter BIOS and enable it again.

4

Save & Exit

Press F10, choose File → Save Changes and Exit, then press Enter. Watch the next boot screen for the 4-digit code if HP asks for it.

F10 → Save Changes and Exit

Screenshots

We do not have verified BIOS screenshots for HP / OMEN yet.

If you can share a clear photo of these menus, email bios@bootready.help with your full motherboard or PC model so we can help others.

Things to watch for

Missing the 4-digit Secure Boot confirmation code after reboot causes Secure Boot to revert to Disabled.

Troubleshooting

You're done. After Windows starts, press Win + R and run tpm.msc to confirm TPM 2.0 is ready. Then run msinfo32 and check that Secure Boot State shows On.

Was this guide helpful?