Thanks for looking in to this. I don't understand these things and only really following instructions to get a better a better configured system and more knowledge.
After I enable pure UEFI and disabled legacy I later wanted to boot from a USB drive, so went back to BIOS and in Compatibility Module enabled legacy again as so
Even if you not familiar with ASUS UEFI you can see that both UEFI and Legacy are enabled. Its also confirmed as I can select non UEFI devices and boot from them, ie my legacy USB boot drives are available and do run.
Out of curiosity I went back to System Settings and see Secure Boot is ON. I just checked again ait is on, I made this screenshot now.
I'm not able to give any explanation, its just how it is. Is there anything you want me check to see where something is wrong?