Prepare the source before creating an encrypted image
Start with the data, devices, and people involved. A clear boundary makes the security setting easier to test and maintain.
Step-by-step workflow
Organize the source files
Remove temporary files, confirm filenames, and keep an independent copy of anything important.
Choose the protection workflow
Decide whether the ISO itself must be protected or whether files should be encrypted before they are added to the image.
Create the image with GiliSoft Secure Disc Creator
Add the selected files, choose the encrypted image option, and set a password that will be delivered through a separate channel.
Verify the generated ISO
Mount or test-burn the image on a spare target and confirm that the protected files open only after the expected password step.
Store and share responsibly
Keep the ISO and password separate, record the owner, and retain a tested backup.
Make the policy easier to manage
Keep recovery separate
Store passwords, recovery keys, and backup information away from the protected device or image.
Test before rollout
Use a non-critical device and verify both the permitted path and the blocked path before applying the rule broadly.
Review exceptions
Give temporary approvals an owner and review date so old exceptions do not become permanent access.
Common problems to check
- Confirm the Windows edition and administrator permissions required by the selected control.
- Test the exact USB device, file system, or target PC instead of relying on a similar model.
- Keep an independent backup before encrypting, blocking, formatting, or creating an image.
- Do not store passwords or recovery keys beside the protected media.
Frequently Asked Questions
Is an encrypted ISO the same as a password-protected folder?
No. An ISO is a disc image. The protection workflow determines whether the image, its files, or both require a password.
Can I burn an encrypted ISO to a disc?
Yes, when the selected disc workflow supports it. Test the resulting disc before distributing it.
Where should the ISO password be sent?
Use a separate trusted channel and do not store it beside the ISO in the same folder or message.
Should I delete the source files after creating the ISO?
Only after the ISO has been opened and verified and an independent backup exists.

