Issue Description
Unencrypted drives expose data if a device is lost or stolen.
Common Causes
- BitLocker not enabled by default
- Lack of awareness about disk encryption
Step-by-Step Solution
Step 1: Check BitLocker Availability
- Open Control Panel → System and Security → BitLocker Drive Encryption
- Confirm BitLocker is available for your edition
Step 2: Enable BitLocker
- Click Turn on BitLocker next to the system drive
- Choose TPM or password unlock method
- Save the recovery key to Microsoft account or USB
Step 3: Start Encryption
- Choose Encrypt entire drive
- Select New encryption mode
- Click Start encrypting
Step 4: Verify Encryption
- Restart the PC
- Confirm BitLocker status shows On
Explore Further
- Encrypt external drives using BitLocker To Go
Prevention & Best Practices
Store recovery keys securely and test access.