GiliSoft USB Encryption

Create a password-protected secure area on an SD card, microSD card, or USB memory card connected to a Windows PC, while keeping a separate public area for ordinary files.

  • Protect memory cards through a reliable USB card reader
  • Keep private and camera-ready files in separate areas
  • Open protected files through a password-mounted virtual drive
Encrypt an SD card or USB memory card with a private secure area
USB and SD Card Encryption Guide

How to Encrypt an SD Card or USB Memory Card on Windows and Mac

An SD or microSD card is easy to lose and easy to read in another computer. This guide explains four practical encryption routes, shows the difference between encryption and the SD lock switch, and helps you avoid making a camera card unusable.

Choose the Right SD Card Encryption Method

MethodBest forWhat it protectsMain tradeoff
GiliSoft USB Encryption
Recommended for Windows
An SD card or USB memory card that needs public and private storagePassword-protected secure area beside a normal public areaThe secure-area workflow is Windows-centered
BitLocker To GoSupported Windows editions and managed PCsThe removable volumeRecovery-key and destination-PC planning are essential
VeraCrypt containerAdvanced users needing an open-source encrypted vaultSelected files placed inside a mounted containerVeraCrypt must be available where the vault is opened
macOS Disk UtilityA Mac-centered card used as encrypted computer storageAn encrypted APFS volumeDevice encryption requires erasing and reduces compatibility
Best practical choice: use GiliSoft when the card is connected to Windows and should retain public space. Use BitLocker To Go for a Windows-managed whole-volume approach. Use VeraCrypt for a portable encrypted container. Use Disk Utility only when the card is mainly computer storage for Macs and can be reformatted.

The SD Card Lock Switch Is Not Encryption

A full-size SD card often has a small side switch marked Lock. A microSD card may gain a similar switch only through its full-size adapter. That switch does not scramble the data and does not ask for a password.

The SD Association specification explains that the switch position is detected by the host socket; the card's internal circuitry does not know the switch position. A compliant host may treat the card as read-only, but another reader or adapter may behave differently.

Write protection

Helps reduce accidental deletion, formatting, or editing when the reader honors the switch.

Encryption

Makes protected data unreadable without the required password, key, or recovery method.

Do not rely on the switch for privacy. Anyone who can read the card can still open its unencrypted photos, documents, and videos.

Will an Encrypted SD Card Still Work in a Camera?

Usually not. Cameras, dashcams, drones, audio recorders, handheld consoles, printers, and similar devices expect a compatible FAT32 or exFAT card and normally cannot display an encryption password prompt, mount a virtual drive, or unlock an APFS or VeraCrypt volume.

For active capture

Keep the camera card in the device-supported format. Import the files to a computer promptly, verify the copy, and encrypt the archive or delivery card.

For private transport

Use a separate SD or microSD card as encrypted computer storage through a reliable USB reader.

If a camera asks to format an encrypted card, cancel unless you intend to erase the protected structure. Formatting in the camera removes the encryption layout and its stored files.

Before You Encrypt an SD or MicroSD Card

Back up and open the files

Copy every important photo, RAW file, video, and document elsewhere, then open several files to verify the backup.

Identify the exact card

Confirm the drive letter, label, capacity, card reader, and free space before selecting a device.

Check the adapter switch

Move the full-size adapter switch to the unlocked position if Windows reports the card as read-only.

Plan where it must open

List every Windows PC, Mac, camera, and mobile device that needs access.

Save recovery separately

Never store the only password or recovery key on the card being encrypted.

Use stable hardware

Avoid loose hubs and unreliable readers during formatting or encryption.

1

Encrypt an SD Card with GiliSoft USB Encryption

This route is designed for Windows users who want one memory card to contain ordinary public storage and a password-protected secure area.

Insert the SD or microSD card into a dependable USB reader. Open File Explorer and confirm its drive letter and capacity.

Back up the card, then open GiliSoft USB Encryption. Select Refresh if the card was connected after the application opened.

Select the correct card and allocate the Secure area. The remaining capacity becomes the Public area.

Choose Install, create a strong password, and leave the card connected while the secure area is prepared.

Open the secure area, enter the password, choose a virtual drive letter, and copy confidential files into the mounted drive.

Close the secure area, safely eject the card, reconnect it, and verify that public files remain visible while private files require the password.

Allocate a secure area and public area on an SD card
Choose how much card capacity should remain public and how much should be password protected.
Enter a password to mount the encrypted SD card area
Enter the password and mount the secure area as a virtual drive.
Manage password backup and recovery for encrypted removable media
Use the toolbox to manage password, backup, recovery, and secure-area removal.
Important: only files inside the mounted secure area are encrypted. Files placed in the public area remain readable without the password.
2

Encrypt the Entire SD Card with BitLocker To Go

Microsoft defines BitLocker To Go as BitLocker for removable data drives and explicitly includes USB flash drives, SD cards, and external hard drives formatted with supported file systems.

Connect the card through a reader, open Manage BitLocker, and locate it under Removable data drives - BitLocker To Go.

Choose Turn on BitLocker and select an available unlock method, normally a strong password for portable media.

Save or print the recovery key somewhere separate from the encrypted card.

For a new empty card, used-space-only encryption is faster. For a previously used card that may contain deleted remnants, encrypt the entire drive.

Choose the removable-drive compatibility mode offered by the wizard, start encryption, and do not disconnect the reader.

After completion, eject and reconnect the card. Test both its password and your ability to locate the recovery key.

Turn on BitLocker To Go for an SD card
Start BitLocker To Go from the removable data drive entry.
Save a BitLocker recovery key for an encrypted memory card
Keep the recovery key away from the SD card itself.
If BitLocker is missing: manual BitLocker management is associated with supported Windows editions and can also be restricted by organization policy. Do not reformat the card merely because the menu is absent.
3

Create a VeraCrypt Container on the Memory Card

A VeraCrypt container is an encrypted virtual disk stored as a normal file. It is useful when only part of the card needs protection and you can install or run an approved VeraCrypt environment on destination computers.

Install VeraCrypt from its official website and select Create Volume.

Choose an encrypted file container and save the new container file on the SD card.

Set the volume size, encryption options, password, and file system according to the destination computers.

Mount the container to a drive letter, copy private files into it, and dismount it before removing the card.

Test the container on another approved computer before depending on it for travel or delivery.

Container warning: VeraCrypt states that a new container path must not be an existing file you want to encrypt; choosing an existing file as the new container overwrites it.
4

Encrypt an SD Card on Mac with Disk Utility

Apple supports password-encrypted external storage, but Disk Utility's device-formatting path erases the selected card first and creates a Mac-centered encrypted volume.

Copy every needed file from the card to another verified location.

Open Disk Utility, choose View > Show All Devices, and select the physical card carefully.

Choose Erase, select GUID Partition Map, and choose an encrypted file-system format such as APFS (Encrypted) where appropriate.

Create and confirm the password, finish erasing, and copy files back only after the encrypted volume mounts correctly.

Eject and reconnect the card, test the password, and confirm it works on every Mac that must open it.

Encrypt removable storage with Disk Utility on Mac
Mac encryption is appropriate for computer storage, not for a card that must return to a camera or Windows-only environment.
Apple's warning: Disk Utility requires erasing the device before this encryption workflow. Encrypted APFS also limits compatibility with older Macs, Windows PCs, cameras, and many consumer devices.

Which Layout Fits Your SD Card?

Real use caseRecommended layoutWhy
Private transport plus ordinary file sharing on WindowsGiliSoft public area + secure areaRecipients can use public files without opening private storage
Company SD card used only on managed Windows PCsBitLocker To GoWhole-volume protection and policy-based administration
Selected private files on several desktop systemsTested VeraCrypt containerProtects a portable vault rather than changing every public file
Mac-only archive cardEncrypted APFSNative Mac password prompt and Disk Utility management
Camera capture cardKeep camera-compatible; encrypt after importThe camera usually cannot unlock computer encryption

SD Card Encryption Troubleshooting

The SD card is read-only or write-protected

Check the adapter's physical switch, try a different reliable reader, inspect Windows policy, and test the card on another computer. Do not assume encryption caused the problem. A failing card controller can also force read-only behavior.

The card does not appear in the encryption tool

Reconnect the reader, choose Refresh, confirm the card appears in File Explorer or Disk Utility, and avoid card readers that expose unusual device modes. If the operating system cannot mount the card normally, repair or recovery should come before encryption.

The camera asks to format the card

Cancel if the encrypted files matter. The camera cannot understand the encrypted layout. Open the card on a compatible computer, recover or copy the files, then use a separate camera-formatted card for capture.

BitLocker To Go is unavailable

Check the Windows edition, file system, administrator or policy restrictions, and whether the reader exposes the card as a supported removable data drive. GiliSoft offers a clearer secure-area alternative for ordinary Windows users.

The card disconnects during setup

Stop using the reader or hub, preserve the backup, and check the card's health. Repeated disconnects during writes are a storage-integrity problem, not merely an encryption inconvenience.

Security Checklist After Encryption

Test a cold reconnect

Eject, reconnect, and verify the password prompt before trusting the card.

Confirm the public boundary

Verify that no private files were accidentally left in an unencrypted public area.

Store recovery separately

Keep recovery keys, passwords, and ownership records away from the card.

Dismount before removal

Close the secure volume and safely eject the reader to reduce corruption risk.

Maintain another copy

Encryption does not protect against card wear, controller failure, or accidental deletion.

Re-test destination devices

Software, policy, and operating-system changes can affect access later.

SD Card Encryption FAQ

Does the SD card Lock switch encrypt files?

No. It is a write-protection signal. It can discourage changes when honored by the reader, but it does not hide or encrypt the data.

Can BitLocker To Go encrypt an SD card?

Yes. Microsoft explicitly includes SD cards among BitLocker To Go removable data drives when the device and file system meet its requirements.

Can I encrypt a microSD card?

Yes, when a computer recognizes it through a built-in slot or USB reader. A microSD-to-SD adapter does not itself encrypt anything.

Can I encrypt the card without deleting its files?

Some Windows workflows can operate on an existing supported volume or create a secure area. Disk Utility device encryption erases the selected storage first. Back up every method regardless.

Can I use the encrypted card in Android?

Do not assume desktop-encrypted cards will work in Android. Android storage behavior varies by version and manufacturer, and adopted storage may be tied to one device. Test only with replaceable data.

What happens if I forget the password?

Use the recovery mechanism created during setup. Without the correct password, key, or supported recovery record, properly encrypted files may be unrecoverable.

Research Sources

Official documentation was used for supported removable media, write-protect behavior, recovery planning, destructive formatting warnings, and compatibility. GiliSoft steps and images were checked against the current USB Encryption interface.

Protect Private Files on an SD or MicroSD Card

Connect the card through a reliable reader, create a password-protected secure area, and keep ordinary public files accessible when needed.

Download TrialVersion: 12.6Buy USB Encryption$49.95