GiliSoft USB Encryption

Create Private and Public Space on One USB Drive

Password-protect confidential files in an encrypted private area while keeping selected files available in ordinary public storage.

USB flash drive with separate encrypted private storage and public sharing areas

How to Password Protect a USB Flash Drive on Windows and Mac

By GiliSoft • removable-drive encryption and sharing workflow

Choose a protection method that matches every computer that must open the drive; GiliSoft USB Encryption provides the secure-area workflow on supported Windows PCs. USB security works best when the protection design matches how the drive will be carried, shared, opened, backed up, and recovered.

Quick answer

Choose a protection method that matches every computer that must open the drive; GiliSoft USB Encryption provides the secure-area workflow on supported Windows PCs. Back up the drive first, test the password on a second supported Windows PC, and never store the only recovery information on the encrypted device.

Choose the Right USB Protection Model

NeedBest-fit approachTradeoff to verify
Share some files openly and keep others privateEncrypted private area plus public areaPublic files remain readable without a password
Encrypt every file on the removable driveWhole-drive removable-media encryptionCompatibility, Windows edition, and recovery-key handling
Send a few protected files independentlyEncrypted file or packageRecipient software and password-delivery method
Block USB devices on managed computersUSB device-control policyThis controls device use, not the data already stored on it
Public/private boundary: GiliSoft USB Encryption protects the secure area. Files left in the public area are intentionally accessible without its password.

Prepare the USB Drive Safely

  1. Identify the correct device.

    Confirm the model, capacity, drive letter, and contents so another removable disk is not changed by mistake.

  2. Make a separate backup.

    Copy all important files to protected storage and open representative files from that backup.

  3. Remove unnecessary data.

    Do not carry old exports, temporary copies, passwords, or unrelated personal and work files.

  4. Plan public and private capacity.

    Estimate future growth instead of allocating only enough encrypted space for today.

  5. Choose a recoverable password process.

    Use a unique passphrase and store the recovery record somewhere separate from the USB drive.

Choose the right USB encryption approach with GiliSoft USB Encryption

The screenshot below is the real product interface for this workflow. Use a noncritical USB drive or a complete backup while evaluating the settings.

Opened GiliSoft USB Encryption private area with browse and close controls
Once opened, the encrypted area behaves like a mounted drive. Close it before unplugging the device or handing it to someone else.
  1. Decide whether public space is needed.

    Choose a secure-area design when the same USB drive must carry both open and confidential files.

  2. Check the receiving environment.

    Confirm supported Windows access, permission to run the opener, and available virtual drive letters.

  3. Back up and create the secure area.

    Protect the original files before changing the USB layout.

  4. Test the complete open-and-close cycle.

    Enter the password, browse files, close documents, close the virtual drive, and reconnect the device.

  5. Review licensing and recovery.

    A trial is for evaluation; confirm current licensing and store recovery information separately before deployment.

Apply the Workflow to This Situation

Choose a protection method that matches every computer that must open the drive; GiliSoft USB Encryption provides the secure-area workflow on supported Windows PCs.

Before handing over or travelling with the device, close the secure area and reconnect the USB drive. Inspect the public area as though you were the recipient. If the intended file is missing or a private file is visible, correct the layout before the drive leaves your control.

Verify Before You Rely on the Drive

  1. Close the private area.

    Close open files and applications, then close the mounted encrypted drive.

  2. Safely remove and reconnect.

    Use Windows safe removal, reconnect the device, and confirm only intended public files are visible.

  3. Open the private area again.

    Enter the password and mount it to an available virtual drive letter.

  4. Check representative files.

    Open files from the beginning, middle, and end of the protected set and confirm recent changes were saved.

  5. Test another supported PC.

    Verify the opener and access workflow on a second Windows computer before travel or delivery.

Understand Encryption, Recovery, and Device Risk

Removable-drive encryption protects data at rest, but it does not prevent physical loss, media failure, malicious USB firmware, malware on a host computer, or copying after the encrypted area is opened. Keep Windows and security software current, avoid unknown computers, and scan transferred files according to your organization’s policy.

Microsoft describes BitLocker To Go as whole-drive encryption for removable data drives. GiliSoft USB Encryption instead emphasizes a password-protected private area alongside public storage. Choose between them according to whether public files must remain accessible and how recovery will be managed.

How to Password Protect a USB Flash Drive on Windows and Mac FAQ

Can one USB drive contain both public and private files?

Yes. GiliSoft USB Encryption creates a password-protected private area while the remaining public area can hold ordinary files. Plan the capacity before creating the secure area.

Does encryption protect files after the private area is opened?

Encryption protects data at rest. After the password is entered and the area is mounted, files can be read by the current computer and may be exposed to malware, monitoring, copying, or accidental changes.

What happens if the USB drive is lost?

Files in the closed encrypted area should remain unavailable without the password, while anything left in public storage remains readable. Physical loss can still destroy access to your only copy, so maintain a separate backup.

Is USB Encryption the same as USB Lock?

No. USB Encryption protects a private storage area on a removable drive. USB Lock controls whether selected USB devices or USB network adapters may be used on a Windows PC.

Can I unplug the drive while the private area is open?

Close documents, close the mounted secure area, and use Windows safe removal first. Disconnecting during writes can corrupt files or the storage device.

Where should I keep the password or recovery information?

Keep it in a separate trusted password or recovery system, never as a plaintext note on the same USB drive.

Try GiliSoft USB Encryption

Back up the USB drive, create a secure private area, and test the complete open-and-close workflow before moving important files.