Recently it was discovered that an employee was able boot to an operating system stored on a USB drive instead of the Windows 11 installation managed by your team. You plan on disabling USB boot in the BIOS settings, but what additional option should be used to prevent this from occurring again?
Enable BIOS password
BIOS Encrypted File Storage (BEFS)
PXE
Secure Boot