Skip to main content
Woman in an office on the phone and using her laptop
4 min

How to Encrypt an Email in Outlook

Email is not always secure. Messages can be intercepted or manipulated at multiple points in their journey from sender to recipient.

Encrypting your emails can help to protect your privacy and security by reducing the chance of interception.

Here's how to encrypt an email in Outlook.

Microsoft Outlook offers simple encryption methods that enable users to safeguard their emails in transit.

This guide walks through how to encrypt an email in Outlook using the most common method: S/MIME.

S/MIME encryption is a widely used protocol for encrypting email communications during transit.

How to Encrypt an Email in Outlook

To encrypt your email in Outlook, you will need to create a digital certificate.

A digital certificate functions like an internet passport. It verifies your identity and allows you to send encrypted emails and access secure websites.

Both the sender and the recipient must have a valid certificate linked to their email accounts to use S/MIME encryption.

Step 1: Set Up a Digital ID in Outlook

Before enabling S/MIME encryption in Outlook, you’ll need to create and set up a Digital ID certificate within Outlook.

If you don’t already have a Digital ID, Microsoft recommends some Digital ID service providers.

Your organisation may have specific policies regarding the use of digital IDs and certificates, so if in doubt, contact your network administrator.

Once you have downloaded your Digital ID certificate, you'll need to add it to your Outlook client:

  1. Open Outlook and click on the ‘File’ tab. Set up Digital ID in Outlook - Step 1
  2. Select ‘Options’ at the bottom left of the menu. Set up Digital ID in Outlook - Step 2
  3. Click ‘Trust Center’ on the left-hand side.
  4. Press the ‘Trust Center Settings’ button. Set up Digital ID in Outlook - Step 3 and 4
  5. Click the ‘Email Security’ option in the menu on the left.
  6. Press the ‘Settings’ button under the ‘Encrypted email’ section. Set up Digital ID in Outlook - Step 5 and 6
  7. In the ‘Security Settings Name’ field, give your settings a name.
  8. Under the ‘Certificates and Algorithms’ section, click ‘Choose’ to specify the digital ID you wish to use. Set up Digital ID in Outlook - Step 7 and 8

Step 2: Enable S/MIME Encryption in Outlook

Once your Digital ID is set up, you can enable S/MIME encryption in Outlook. Follow these steps:

  1. Return to Outlook and click ‘File’ in the menu bar. Enable S/MIME encryption in Outlook - Step 1
  2. Select ‘Options’ and click on ‘Trust Center’. Enable S/MIME encryption in Outlook - Step 2
  3. Within the Trust Center, choose ‘Trust Center Settings’. Enable S/MIME encryption in Outlook - Step 3
  4. Click the ‘Email Security’ option in the menu on the left.
  5. Check the box next to ‘Encrypt contents and attachments for outgoing messages’.
  6. Click ‘OK’ to save your settings. Enable S/MIME encryption in Outlook - Step 4, 5, 6

Step 3: Send an Encrypted Email

With S/MIME encryption enabled in Outlook, you can now compose and send an encrypted email:

  1. Open Outlook and click ‘New Email’ to create a new message. Sending an encrypted email - Step 1
  2. Compose your email as usual, adding the recipient(s), subject, and message content.
  3. To encrypt the email, click on the ‘Options’ tab. Sending an encrypted email - Step 3
  4. Within the tab, click on ‘Encrypt’ in the ‘Permission’ group. Choose encryption only or apply a no-forwarding rule. Sending an encrypted email - Step 4
  5. A message will appear above the ‘To’ field confirming encryption. Sending an encrypted email - Step 5
  6. Click ‘Send’ to transmit the encrypted message.

Step 4: Decrypt an Encrypted Email

When you or your recipient receives an encrypted email, Outlook will automatically decrypt it:

  1. Open the encrypted email you received in your Outlook inbox.
  2. Outlook will automatically decrypt the message and display it.
  3. Read the decrypted email as you would any regular email.
Note: If you have an E3 or E5 Microsoft 365 plan, you may have access to Microsoft’s more advanced secure email method, Microsoft Purview Message Encryption. Learn more in our Microsoft 365 secure email vs Mailock review.

Securing Highly Sensitive Emails in Outlook

Encrypting your emails is a practical way to reduce the chance that message content is read in transit.

For highly sensitive information, though, encryption is usually one layer in a wider security setup rather than a complete answer on its own.

Want Secure Sending Inside Outlook?

Learn how Mailock works with Outlook so teams can protect sensitive messages without moving senders into a separate portal.

Explore Mailock for Outlook

If you need controls beyond certificate-based encryption, such as checking who can open a message or withdrawing access after send, dedicated secure email tools may be a better fit.

Several secure email solutions add protections on top of standard Outlook encryption, including Mailock.

The Mailock Outlook add-in adds capabilities inside Outlook, such as:

  • Recipient authentication
  • Compatibility with all email clients
  • Complete audit trails
  • Email revoke

 

FAQs

What Is the Main Security Issue Covered?

The article explains encrypt an email in outlook and the risks it can create when sensitive information is sent or accessed by email.

What Controls Should Teams Consider?

Teams should look at access controls, authentication, encryption, staff training, recovery processes, and evidence of message activity. The right mix depends on the information being handled.

How Does Mailock Fit the Topic?

Mailock supports secure email workflows with protected access, recipient authentication, secure replies, message tracking, and audit trails.

 

References

Find Digital ID or Digital Signature Services, Microsoft, 2024

Reviewed by

Sam Kendall, 31.05.26

Sabrina McClune, 17.06.25

This content is for general information only and is not legal advice.

 

Originally posted on 02 06 23
Last updated on June 5, 2026

Posted by:  Sabrina McClune

Sabrina McClune writes about cybersecurity, data protection, digital identity, and digital transformation for Beyond Encryption, helping regulated sectors understand complex technology and compliance topics with greater clarity.

Return to listing