Applying Azure Disk Encryption to a Windows Virtual Machine

Pluralsight Hands-On Lab — Azure Security

Applying Azure Disk Encryption to a Windows Virtual Machine

Pluralsight Hands-On Lab — Security


At a Glance

PlatformPluralsight
CategoryAzure Security
Lab TypeGuided + Challenge Mode
EnvironmentAzure Portal, Windows VM via Remote Desktop
Completed2026

Overview

Azure Disk Encryption (ADE) uses BitLocker to encrypt Windows VM disks at rest, with encryption keys stored and managed in Azure Key Vault. In this lab, I secured a Windows Server VM by enabling disk encryption on both the OS and data disks, deploying a dedicated Key Vault with disk encryption access enabled, creating an encryption key, and confirming the encryption was applied — both through the Azure portal and by verifying BitLocker status directly on the VM via Remote Desktop.


What I Did


← Back to Pluralsight Labs