My solution was to build a customized iPXE 3 bootloader image with an embed script that fetches the actual boot instructions. This iPXE image was then signed and placed in the EFI system partition on the emmc as ESP/EFI/BOOT/BOOTX64.EFI. I may make a more detailed guide to this at some point in the near future.