Run tpm.msc -> check if TPM 2.0 is on. (In Intel chip, this bios setting is called Platform Trust Technology)
Run msinfo32 -> Bios mode UEFI, Secure Boot State On.
If all above is ok and still not working, sigh.. look around further.
FYI. I turned on Intel Software Guard Extension in bios. Not sure if it does anything for Windows 11.
Good luck!