home > training > BITLOCK: Planning and Deploying BitLocker Drive Encryption Training

BITLOCK: Planning and Deploying BitLocker Drive Encryption Training


28 Student Comments

  • 2 Days
  • Helps achieve HIPAA compliance with laptops
  • Includes "BitLocker to Go" for USB
  • Helps achieve GDPR compliance
  • Exclusive course - taught by Mike Danseglio, creator of BitLocker!
  • Included in the "all-you-can-eat" Microsoft Live Training Subscription Learn More
Interested in scheduling a date for this course?
Request A Date
Register today - no risk!  No cancellation fees.  Full money back guarantee!
This course is included in our Microsoft Live Training Subscription
Get "all-you-can-eat" training by Sept 30 for one low price!
BitLocker 2-Day Course at Interface Technical Training
  • This field is for validation purposes and should be left unchanged.

Course Description

This 2-day instructor-led BitLocker training course teaches you everything you need to know about BitLocker. This course includes hands-on labs. These labs reinforce and expand on the instructor-led portion by having you actually deploy and operate BitLocker. You’ll practice techniques for setting up a BitLocker-enabled environment, implementing BitLocker on multiple system configurations, and recovering BitLocker after the detection of a possible compromise.

Data security is an increasingly critical part of IT. More and more organizations require data encryption in order to meet regulatory security requirements. BitLocker Drive Encryption is a popular choice to meet these requirements. BitLocker is a highly effective and low-cost data encryption technology that’s built into Windows. But because of this strong protection, your organization must understand and carefully plan for BitLocker deployment to avoid data loss and system downtime.

Although the labs focus primarily on Windows 10 and Windows Server 2012, the class also applies to Windows 7, Windows 8, Windows Server 2008, and Windows Server 2016.


Understanding and Analyzing BitLocker

Analyzing BitLocker

  • Context and background
  • Understanding BitLocker
  • Understanding BitLocker to Go
  • Cryptography
  • Trusted Platform Module (TPM)


Understanding BitLocker

  • Pre-Boot Authentication
  • System Tamper Detection\
  • System Integrity Verification
  • Network Unlock
  • Encrypted Drive Support


BitLocker Architecture

  • BitLocker Initialization
  • BitLocker Operation
  • BitLocker Suspend and Resume
  • BitLocker to Go Architecture


Planning for BitLocker Deployment and Support

Planning BitLocker Deployment

  • Prerequisites
  • Examining Hardware Capabilities
  • Planning Configuration Options
  • Planning Recovery Options


IT Planning

  • Planning User Interaction Scenarios
  • Planning Recovery Key Access and Use
  • Planning BitLocker Deployment Through System Center Configuration Manager (SCCM)
  • Planning BitLocker Deployment Through Microsoft Deployment Toolkit (MDT)
  • Planning BitLocker Deployment Through Microsoft Baseline Administration and Monitoring (MBAM) and Microsoft Desktop Optimization Pack (MDOP)


User Planning

  • Identifying BitLocker Users and Devices
  • Educating BitLocker Users


Deploying BitLocker

Single Standalone Device

  • Configuring BitLocker Options
  • Enabling BitLocker
  • Encrypting the Drive
  • Verifying BitLocker Operation


Single Domain-Joined Device

  • Configuring BitLocker Options
  • Enabling BitLocker
  • Encrypting the Drive
  • Verifying BitLocker Operation


Multiple Devices

  • Deploying BitLocker Through Group Policy
  • Deploying BitLocker Through PowerShell
  • Deploying BitLocker Through SCCM, Altiris, and MBAM


Troubleshooting BitLocker Deployment and Operational Issues

  • Normal BitLocker Use
  • Suspending and Resuming BitLocker
  • BitLocker Recovery Mode
  • Recovering BitLocker Devices
  • Preventing BitLocker Recovery Mode
  • Managing the Trusted Platform Module (TPM)


Anyone involved in planning, deploying, or supporting BitLocker. This includes CISOs, IT architects, system administrators, server administrators, disaffected college students, and technical support engineers.


A strong understanding of Windows deployment and management in an enterprise environment is required. Familiarity with cryptography and data storage technology is highly recommended.

What You Will Learn

After completing this course, student will understand how to:

  • Plan for BitLocker deployment for both new and existing computers
  • Create a recovery plan for lost encryption keys
  • Identify computers that meet BitLocker hardware security requirements
  • Determine optimal settings for encryption and data recovery
  • Choose a strategy that minimizes BitLocker Recovery events
  • Select and implement a BitLocker deployment method
  • Implement an organization-wide or limited-scope BitLocker deployment
  • Plan BitLocker integration with Microsoft System Center Configuration Manager (SCCM), Active Directory Domain Services, and Microsoft BitLocker Administration and Monitoring (MBAM)
  • Support BitLocker systems in the field with minimal downtime

Student Comments (28)

July 24, 2019 | BITLOCK Student
Comments about the Physical Environment
"I appreciate the dual monitor setup, makes more efficient to complete hands on lab. Great smart boards technology for interactive teaching."
July 24, 2019 | BITLOCK Student
Comments about the Instructor
"It have been a true privilege to attend BitLocker class with Mike Danseglio. Mike have the passion for teaching, great listening ear and great technical background to share his professional expertise. It have been pure pleasure to learn from Mike."
July 24, 2019 | BITLOCK Student
Comments about the Instructor
"Mike knew what he was talking about (if anyone should it would be him) and made the class an enjoyable experience. I would learn from him any time."
January 8, 2019 | BITLOCK Student
Comments about the Instructor
"One of the best instructors I ever had in a training course"
January 8, 2019 | BITLOCK Student
Comments about the Instructor
"Great lectures and the labs were on point."