Understand what OMB M-22-09 requires at the hardware level and how TPM, secure boot, and firmware integrity support federal Zero Trust Architecture compliance.