Windows

How to check if Microsoft BitLocker Administration and Monitoring is installed on Windows

MBAM-Client

The Microsoft BitLocker Administration and Monitoring (MBAM) Client software enables administrators to enforce and monitor BitLocker Drive Encryption on computers in the enterprise. The BitLocker client can be integrated into an organization by deploying the client through an electronic software distribution system, such as Active Directory Domain Services, or by directly encrypting the client computers as part of the initial imaging process. See the following guide on how to enable FileVault disk encryption on a Mac device and BitLocker Drive Encryption architecture and implementation scenarios.  

There are various ways to check if Microsoft BitLocker Administration and Monitoring is installed on your device. I will be working you through the following steps as shown below. You may be interested in some of the articles I have written regarding “Insight on Full Disk Encryption with PBA / without PBA, UEFI, Secure Boot, BIOS, File and Directory Encryption, and Container Encryption“. Also How to activate DriveLock License on Windows Server. Since I have tested an FDE solution with PBA, kindly take a look at how to download and install DriveLock

Via Programs / Feature

You can quickly determine this via the Control Panel / Windows Settings. Click on Programs to view the installed programs. If MBAM is installed, you should be able to see this from the list of installed programs as shown below.

mb1-Capture

Via the BitLocker Management Client Service

Determine whether the MBAM agent is installed on the client’s computer. When MBAM is installed, it creates a service that is named BitLocker Management Client Service. This service is configured to start automatically. Determine whether the service is running.

mb2-Capture

Lastly, make sure that MBAM Group Policy settings are applied on the client’s computer. The following registry subkey is created if the Group Policy settings were applied on the client’s computer.

HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\MDOPBitLockerManagement
mb3-Capture

Note: Depending on when you deploy the Microsoft BitLocker Administration and Monitoring Client software, you can enable BitLocker Drive Encryption on a computer in your organization either before the end-user receives the computer or afterward by configuring Group Policy and deploying the MBAM Client software by using an enterprise software deployment system.

I hope you found this blog post on How to check if Microsoft BitLocker Administration and Monitoring is installed helpful. Please let me know in the comment session if you have any questions.

Subscribe
Notify of
guest

0 Comments
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x