Encrypting Emails in Outlook

When you need to protect the content of an email message, you should encrypt it.  Outlook includes encryption features that let you ensure that your email message stays private between you and the recipient(s). This is useful when you need to send confidential or personal information.

Note: Be advised that the experience of opening an encrypted message is different for internal vs external recipients.


Table of Contents

Encryption options

In all cases, you'll be presented with 4 encryption options to choose from. Each option encrypts the entire message both in transit and at rest in the recipient's mailbox(es), including any attachments.

Message encryption options:
  Modify message content Forward/copy/print Viewable by external recipients
Encrypt ✔️ ✔️ ✔️
Do Not Forward ✔️ ✔️
Stonehill College – Confidential ✔️ ✔️
Stonehill College – Confidential View Only

Back to top

Encrypt an email message

Outlook desktop app on Windows

To encrypt a message, find the Options tab in the Ribbon at the top of the window, then click Encrypt


Outlook desktop app on macOS

In order to easily Encrypt an email, the Encryption button will needed to be added to your toolbar in Outlook. To do this, click the See more items button () in the toolbar and click Customize Toolbar.

You’ll see the current icons in the toolbar moving at the top of the screen. To add an item to the toolbar, click and drag the Encryption item up to the toolbar in the position you want it to go. Release the mouse button and it will appear where you dragged it.

To encrypt a message, click the Encryption button at the top of the email window and click Encrypt.


Outlook Web App or the new Outlook Windows client

To encrypt a message, find the Options tab in the Ribbon at the top of the window, then click Encrypt (you may instead see only a lock icon). 

Back to top

Opening an encrypted message

For the recipient, the experience of opening a message protected by encryption will be slightly different than viewing a email that is typically delivered unencrypted.

As highlighted in the encryption options above, the recipient's experience will be different depending on the type of encryption you select. The following are some examples of what the recipient can see, noting that the limitations are grayed out where appropriate. 

Back to top

Receiving encrypted email from another Stonehill account (internally)

Opening a protected message is streamlined since the Stonehill email address will be using Microsoft Outlook to open the message. This decryption process occurs behind the scenes and oftentimes isn't even something that the recipient will notice providing a seamless user experience.

Encrypted

Do Not Forward

Upon receiving the email, the recipient will see this security message in the reading pane:

The email will open similar to the Confidential option, but given the nature of the encryption, forward, printing and screenshots are unavailable with this option. The reply option is available. The screen will black out if attempting to capture the screen.

Stonehill College - Confidential

Upon receiving the email, the recipient will see this security message in the reading pane:

The email must be opened in a full window (double clicked) in order to view for confidentiality.

Stonehill College - Confidential View Only

Upon receiving the email, the recipient will see this security message in the reading pane:

The email will open similar to the Confidential option, but given the nature of the encryption, reply, forward, printing and screenshots are unavailable with this option. The screen will black out if attempting to capture the screen.

Back to top

Receiving an encrypted email on an external account (such as Gmail or Yahoo)

Upon delivery to an external email address (such as Gmail, Yahoo, etc), the message will present a button link to a Stonehill College-branded portal. Once clicked, the recipient will be able to securely open the email after verifying that they are the intended recipient, either via a sign-in prompt or one-time passcode.

Upon clicking the "Read the message" button and verifying their identity, the recipient will see the following screens depending on the type of encryption:

Encrypted


 

Do Not Forward

The email will open similar to the Encrypted option, but given the nature of the encryption, forward and printing options are unavailable with this option. The reply option is available, and unlike the internal "Do Not Forward" option, the screen will not black out if attempting to capture the screen.



Stonehill College - Confidential & Confidential View Only

Given the restricted nature of the Confidential and Confidential View encryption level, emails will not be viewable by external email addresses. 

Back to top

Retention and revocation of encrypted messages sent externally

Encrypted emails sent to external email addresses remain accessible for 30 days. If you want to revoke access to an encrypted email sooner than the 30-day period, contact the Service Desk and we can revoke the email for you.

After 30 days (or as of revocation), upon viewing the contents of a revoked encrypted email, the recipient will receive this message:

Back to top

 

Was this helpful?
0 reviews