But it doesn’t say what TLS cipher suite it is using, making it a pointless benchmarks
The fact it's bottlenecked somewhere but CPU is fine suggests some configuration parameter somewhere results in not as much data being in flight for HTTPS, limiting throughput over this very fast connection. If so, fixing this parameter would make the noticeable difference essentially vanish.
In practice, as you suspected, this amounts to AES, as per the curl -v output:
SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384