Secure Boot Failure: How to Bypass This Error

Adjust BIOS settings if you encounter Security Boot fail

Reading time icon 6 min. read


Readers help support Windows Report. We may get a commission if you buy through our links. Tooltip Icon

Read our disclosure page to find out how can you help Windows Report sustain the editorial team Read more

Key notes

  • Using the built-in startup repair option can sometimes help with Secure Boot issues.
  • If Secure Boot is not working, you might have to reset or restore your system in some cases.

Secure Boot prevents malware from affecting your bootloader, but what if Secure Boot failure occurs? If this happens, your PC won’t be protected against these attacks.

This can be a problem since malware can run on your PC even before Windows starts, so it’s essential to fix this issue as soon as possible. and this guide is going to show you how to do it.

How do I fix Secure Boot failure?

1. Turn Off Windows 10 Secure Boot

  1. Force shut your PC by long pressing the power button.
  2. Now switch on the computer and access the BIOS This is by typically pressing a specified key on the keyboard during the boot-up sequence. The commonly used BIOS access keys are F1, F2, F10, F12, and Esc depending on the manufacturer and computer model.
  3. Now locate the Windows 10 Secure Boot setting mostly found under Security.
  4. Using the right key, change it to Disabled.

  5. Save the changes, exit, and retry boot.

In certain instances, you may have to additionally change other firmware to enable legacy support and load the Compatibility Support Module (CSM).

An alternative way to disable Secure Boot

  1. While holding down the Shift key, go to start then choose Restart.
  2. From the next screen, Go to Troubleshoot.
  3. Select Advanced Options. 

  4. Then click UEFI Firmware Settings.
  5. Again find the Secure Boot option, and switch it to Disabled.
  6. Save these changes and exit to allow the PC to reboot.

Overall, since you disable Secure Boot via the PCโ€™s BIOS menus, the procedure for disabling varies among PC manufacturers.

How to re-enable Secure Boot

  1. Uninstall any hardware, drivers, or apps you suspect caused the problem.
  2. Restart the computer.
  3. Go to the PC BIOS menu by starting to press the correct BIOS entry key ( F1, F2, F12, F10, or Esc) immediately after the computer returns.
  4. Look for the Secure Boot setting in the Security tab and set it back to enabled.
  5. Save your new settings and proceed to boot.

If the PC denies you the option to enable Secure Boot, do a factory reset (see the steps later).

2. Use System Restore

  1. Press the power button to turn off the PC.
  2. Then bring it back on by again pressing on the power-on
  3. Wait until the computer brings the sign-in screen.
  4. Now, while holding down the Shift key, click start then power button before choosing restart.
  5. Your PC restarts to a new screen inviting you to Choose an option.
  6. Click Troubleshoot then Advanced options.
     
  7. Now select System Restore.
  8. Again the PC restarts, this time to the System Restore option. Choose your account and enter the password.
  9. Choose a recent restore point from the list shown.
  10. The system will hopefully restore its earlier working settings and henceforth successfully boot.

Alternatively, you can always rely on professional third-party software designed to initiate a complete system restore and optimize your device.

This type of tool performs this complex action automatically, without harming your user data in any way.

3. Run Startup Repair

  1. Repeat steps 1-5 as enumerated in Solution 2.
  2. Click Advanced options.
  3. Choose Startup Repair.

  4. The computer self-diagnoses and attempts to heal whatever is causing the secure boot hitch.

4. Run SFC

  1. Repeat steps 1-5 as enumerated in Solution 2.
  2. Click Advanced options.
  3. Select Command Prompt.

  4. Type sfc/ scannow in the displayed cmd.exe screen then press Enter.Secure Boot Failure Windows 10
  5. Be patient as the tool detects and eliminates pending bugs.

In some instances, sfc /scannow can stop, but that can be easily fixed.

5. Recover Windows 10 from the from a System Image

  1. Insert your external hard disk/DVD into the appropriate drive.
  2. Click the Start
  3. Type backup and restore in the search dialogue box.
  4. Click the backup and restore (windows 7) option.Secure Boot Failure Windows 10
  5. Select create a system image.Secure Boot Failure Windows 10
  6. Choose on a hard disk/one or more DVDs to create the image on a DVD.Secure Boot Failure Windows 10
  7. Click next then start backup.Secure Boot Failure Windows 10
  8. Wait for the image backup creation to finish.

How to use the disk image

  1. Insert the external hard drive/DVD you just created into the USB/DVD drive.
  2. Repeat steps 1-5 as enumerated in Solution 2.
  3. Click Advanced options.
  4. Select System image recovery.
  5. Then click select a system image in the next select.
  6. Click next.
  7. Select the image location (hard drive/DVD) from the next screen and again click next.windows 10 secure boot
  8. Be patient as windows 10 executes the recovery boot. (Click retry if you receive the re-image your computer error ).Windows 10 secure boot failed

In case you’re not familiar with disk images, we have a great guide on what is a disk image that can give you more information.

6. Reset the PC

  1. Repeat steps 1-5 as enumerated in Solution 2.
  2. Now choose Reset this PC (not advanced options as above).
  3. Choose to either Keep my files (to retain your data) or Remove everything as shown.
  4. Confirm that you want to reset by clicking Reset in the next window. 

7. Perform a clean install of Windows 10

If all fails, it could be time to do a fresh installation of Windows 10. And while this will take more time than the previous solutions, itโ€™s 100% guaranteed to work.

For a step-by-step guide on clean install the OS, follow the instructions listed in Windows 10 reinstall guide.

You will, of course, need to reinstall everything, including hardware drivers.  You can always your files from the backup in the Windows.old folder.

Is Secure Boot really necessary?

  • Secure boot validates the software on your PC and prevents unverified software from running.
  • While it provides certain security benefits, it can cause issues with dual boot.
  • It can also cause issues if you willingly try to run uncertified software.

While the feature is helpful for its security benefits, it’s not mandatory to use it, but unless you’re using dual boot or uncertified software, there’s no reason to disable it.

Secure boot failure can leave your system vulnerable, so addressing this issue as soon as possible is essential. This isn’t the only issue, and many reported that Secure Boot is enabled, but not active, but we tackled that issue in another guide.

What method did you use to fix this issue? Let us know in the comments below.

More about the topics: windows 10 fix