I added this to the registry of a user whose machine was giving the same error even after updating the BIOS and clearing TPM
Change the value of “ProtectionPolicy” to “1″
if ProtectionPolicy dosen't exist, Add DWORD (32bit) Value and then change the value to 1
Found the information for it from here; https://social.technet.microsoft.com/Forums/windows/en-US/47faab6b-d717-4068-bee4-c694811e0066/crede...