Hi Azat,
Probably, you did some parts already correctly, but you didn't mention all relevant information in your question.
- Make sure you are not using a user with the system administrator role as this person is bypassing all security
- Make sure the user doesn't have other privileges directly or indirectly using the same menu-items where the security would be cumulative granting again access.
- If this is done correctly, make sure you do a full database synchronization. There was one started as I can see in your screenshot, but a full DB sync will also sync the security settings fully.
PS. I do like your questions. You seem to be eager to understand the security architecture correctly. Thanks for your great questions.