UEFI Security Latitude 3340 A14

When switching a latitude 3340 to UEFI boot mode, it no longer puts astricks (*) next to USB and PXE boot devices in the F12 menu.  

I have been able to prevent a security concern by turning off UEFI network stack and USB boot support.

I always liked the way Dell BIOS's had a method of leaving boot options available in the boot menu but prompting for admin passwords.  It saves a couple reboots when we have to image computers.  Does anyone have a method of restoring this functionality?

