Valorant’s Vanguard anti-cheat expects Secure Boot and TPM 2.0 on Windows 11. Secure Boot is a firmware feature, so first confirm the PC is already using UEFI mode before changing BIOS settings.
- Press Windows+R, enter
msinfo32, and check BIOS Mode and Secure Boot State. - If BIOS Mode is UEFI but Secure Boot is off, restart into the PC’s UEFI/BIOS setup using Windows Advanced startup or the manufacturer’s documented key.
- Find Secure Boot under the firmware’s Boot, Security, or Authentication section and enable it. Some systems require the default Secure Boot keys to be installed.
- Save the firmware changes, restart Windows, and check System Information again before launching Valorant.
Do not switch Legacy/CSM off blindly
A Windows installation created in legacy BIOS mode may use an MBR system disk. Changing firmware to UEFI-only without preparing the installation can make Windows unbootable. Back up first and use Microsoft’s supported MBR-to-GPT migration process only when the hardware and disk layout are suitable.
TPM is a separate Vanguard requirement
If Vanguard still reports a requirement after Secure Boot is enabled, run tpm.msc and confirm TPM 2.0 is available and ready. Do not clear the TPM as a routine troubleshooting step because doing so can affect encryption keys and credentials.
Firmware menus differ substantially by motherboard brand. If Secure Boot is present but cannot be selected, look for an OS Type/Windows UEFI mode setting or consult the exact motherboard manual rather than copying settings from a different PC.

Kermit Matthews is a freelance writer based in Philadelphia, Pennsylvania with more than a decade of experience writing technology guides. He has a Bachelor’s and Master’s degree in Computer Science and has spent much of his professional career in IT management.
He specializes in writing content about iPhones, Android devices, Microsoft Office, and many other popular applications and devices.