Thank you for the screenshot, that is what I suspected.
Windows 10 is installed in Legacy BIOS mode, and to enable Secure Boot and TPM you need to change BIOS Mode to UEFI Mode.
However, you cannot do that directly, because your drive has an MBR partition style, and for UEFI Mode, it needs to be have a GPT partition style.
It is a big job to convert convert your drive to GPT, there are two methods.
1
Backup your personal files, then clean install Windows 10 form a bootable USB and before doing that you will need to change BIOS to UEFI and convert the drive form MBR to GPT, which would wipe all data on the drive.
2
You can try to convert the drive without data loss from MBR to GPT using the tool that Microsoft provide, then boot into BIOS and switch to UEFI Mode
Before you attempt to do this, please backup your personal files.
https://docs.microsoft.com/en-us/windows/deployment/mbr-to-gpt