How to check if Microsoft BitLocker Administration and Monitoring (MBAM) is installed on Windows


The Microsoft BitLocker Administration and Monitoring (MBAM) Client software enables administrators to enforce and monitor BitLocker Drive Encryption on computers in the enterprise. The BitLocker client can be integrated into an organization by deploying the client through an electronic software distribution system, such as Active Directory Domain Services, or by directly encrypting the client computers as part of the initial imaging process. See the following guide on how to enable FileVault disk encryption on a Mac device and BitLocker Drive Encryption architecture and implementation scenarios.  

There are various ways to determine if MBAM is installed on your device. I will be working you through the following steps as shown below. You may be interested in some of the articles I have written regarding “Insight on Full Disk Encryption with PBA / without PBA, UEFI, Secure Boot, BIOS, File and Directory Encryption, and Container Encryption“. Since I have tested an FDE solution with PBA, kindly take a look at how to download and install DriveLock

Via Programs / Feature

You can quickly determine this via the Control Panel / Windows Settings and then click on Programs to view the installed programs. If MBAM is installed, you should be able to see this from the list of installed programs as shown below.


Via the BitLocker Management Client Service

Determine whether the MBAM agent is installed on the client’s computer. When MBAM is installed, it creates a service that is named BitLocker Management Client Service. This service is configured to start automatically. Determine whether the service is running.


Lastly, make sure that MBAM Group Policy settings are applied on the client’s computer. The following registry subkey is created if the Group Policy settings were applied on the client’s computer.


Note: Depending on when you deploy the Microsoft BitLocker Administration and Monitoring Client software, you can enable BitLocker Drive Encryption on a computer in your organization either before the end-user receives the computer or afterward by configuring Group Policy and deploying the MBAM Client software by using an enterprise software deployment system.

I hope you found this blog post helpful. Please let me know in the comment session if you have any questions.

Notify of

Inline Feedbacks
View all comments
Would love your thoughts, please comment.x