Disk Encryption- Deployments
A deployment pushes a BitLocker policy to a scope of endpoints- encrypting their drives- or decrypts them again. The list tracks each deployment's progress.
How to get here
- Open Device Control → Disk Encryption.
- Click the Deployments tab.
Navigate to: Device Control → Disk Encryption → Deployments
URL path: /device-control/bitlocker-settings/deployments
The Deployments screen

Each row is a deployment with its stage and the count of endpoints succeeded, failed, and pending. Create starts a new one.
How do I create a deployment?
Click Create. The deployment form opens in a drawer.

| Field | Required | Notes |
|---|---|---|
| Deployment Name | Yes | A name for the job. |
| Description | No | What it does. |
| Deployment Type | Yes | Encrypt (apply a policy) or Decrypt (remove encryption). |
| Select BitLocker Policy | Yes* | The policy to apply. *When the type is Encrypt. |
| Scope | Yes | Which endpoints to target. |
| Deployment Policy | Yes | The schedule/window rules for the rollout. |
| Notify to | No | Who to email about the result. |
Save to deploy.
Tips & troubleshooting
- No policy to pick. Create one on the Policies tab first.