Hello Carl,
Thank you for following up.
I wanted to provide an update that I was able to resolve the issue.
After trying the usual troubleshooting steps (restoring the Secure Boot factory keys, rebuilding the boot files, and updating the BIOS), the problem still occurred whenever Secure Boot was enabled.
What ultimately resolved it was using Microsoft's SecureBootRecovery.efi. I created a FAT32 USB drive, copied C:\Windows\Boot\EFI\SecureBootRecovery.efi to EFI\BOOT on the USB, renamed it to BOOTX64.EFI, and booted from the USB as a UEFI device. After the recovery process completed, I restarted the laptop, re-enabled Secure Boot (UEFI mode, Standard), and Windows booted normally.
The "Windows Boot Manager has been blocked by the current security policy" error is no longer present, and Secure Boot is now enabled and working correctly.
Thank you for your assistance and for following up on this issue. I hope this information is helpful to anyone else who encounters the same problem.