Encrypting an email is a form of cryptographically securing it so no one apart from the intended recipients will be able to read it. When you encrypt an email, the readable message is transformed into scrambled code only deciphered by authorized recipients.
Outlook offers two methods of encrypting an email, namely:
- Microsoft 365 Message Encryption: This method is native to Office 365 subscribers with an Enterprise E3 license and doesn’t require additional setup.
- S/MIME encryption: This method requires acquiring a digital certificate from your IT admin, adding it to your computer, then configuring Outlook to use this certificate.
This guide will go through the steps in encrypting an email using Microsoft 365 in the Outlook desktop and web apps. Make sure you have an Office 365 with an Enterprise E3 license since this feature is not applicable to other users without a subscription.
Sending Encrypted Emails on Outlook Desktop
- Create a new email on your Outlook desktop by clicking New Email.
Select New Email. - Compose your email as you usually would.
Write your email. - Go to the Options tab.
Click on the Options tab. - On the top ribbon, click on the lock icon in “Encrypt” to encrypt your email. You can also click on the small arrow-down to select other ways to encrypt your message.
- Encrypt-Only: encrypts the email, but recipients are not limited to how they use it.
- Do Not Forward: prevents recipients from forwarding, printing, and copying the content of the email.
- Confidential All Employees: This prevents recipients from forwarding, printing, and copying the email’s content and prevents you from sending the email to contacts outside your organization.
- Highly Confidential All Employees: prevents recipients from forwarding, printing, copying the email’s content, or replying to the email and prevents you from sending the email to contacts outside your organization.
Select an encryption option.
- After choosing an encryption option, you will see a label on top of the email notifying you that the email is encrypted.
Your encrypted email will now have a label on top. If you’re ready to send the email, click Send.
Hit Send.
Opening an Encrypted Email in the Outlook Desktop App
For Microsoft 365 or outlook.com Users
Users receiving the encrypted email can open and read it as usual. The main difference is it will have markings showing it’s encrypted.


For Non-Microsoft Users (gmail.com, yahoo.com, etc.)
- Launch the Outlook desktop app and click on the encrypted email. Instead of a lock icon, it will have an attachment icon (even if the sender didn’t include any attachments in the email).
Select the encrypted email. - To read the email, click Read the message on the email body. This will launch a browser window.
Click on the Read the Message button. - You can sign in with your provider (e.g., Google) or with a one-time passcode sent to your email.
Sign in using your preferred method. - After signing in, you can view the email.
Encrypted email is now displayed.
Sending Encrypted Emails on Outlook Web
- Sign in to outlook.com and create a new email by clicking New message.
Hit New Message. - Write your email as usual.
Compose your email. - Select the Encrypt button above the “To” field.
Click on Encrypt. - To change the encryption type, click on Change permissions.
Click on Change permissions. - In the drop-down menu, select how you want to encrypt your message. Then, click OK.
Choose from the encryption option. Hit OK. - Once you’re ready, hit Send.
Click Send.
Opening an Encrypted Email via Browser
For Microsoft 365 or outlook.com Users
- Sign in to outlook.com and open the email with a lock icon on the far-right side.
Open the encrypted email. - The email will open as usual, but it will display a label on top informing you of the encryption type used.
Encrypted email is viewed as usual.
For Non-Microsoft Users (gmail.com, yahoo.com, etc.)
- Sign in to your email account on your browser. Then, open the encrypted email.
Open the encrypted email in your browser. - Click on Read the message. This will open another tab.
Click on Read the message. - Sign in to view the message (with your provider like Google or using a One-time passcode).
Sign in with your preferred method. - Once you’re signed in, you can read the email.
Encrypted email is opened in the new tab.