What Is FileVault?
FileVault is macOS’s built-in full-disk encryption feature, designed to protect data by encrypting the entire startup disk. It uses XTS-AES-128 encryption with a 256-bit key to secure all files, including the operating system and user data.
How It Works
Once enabled, FileVault encrypts the disk in the background, requiring the user’s login password or a recovery key to unlock it. On Macs with Apple silicon or the T2 Security Chip, encryption is hardware-accelerated, minimising performance impact.
Why It Matters
FileVault safeguards sensitive information, such as financial records or personal data, by ensuring that unauthorised users cannot access it. This is particularly crucial for users who handle sensitive information or use their Mac for business purposes.

Enabling FileVault
To enable FileVault, navigate to System Settings, then Privacy & Security, then select FileVault, and follow the prompts to turn it on. Users can choose to use their iCloud account or create a recovery key for unlocking the disk if necessary.
Compatibility
FileVault requires the startup disk to be formatted with APFS (Apple File System). If the disk uses an older file system, it must be reformatted to APFS before enabling FileVault.
Disk Space
Ensure there is sufficient free disk space before enabling FileVault, as the encryption process requires space to operate effectively.
Recovery Key
It is crucial to store the recovery key in a secure location. Losing both the password and recovery key may result in permanent data loss.
Managing FileVault In Organisations
For businesses, FileVault can be managed using Device Management solutions. This allows administrators to enforce encryption policies, store recovery keys securely, and ensure compliance across all devices.
Overview
FileVault provides robust protection for macOS users by encrypting the entire startup disk, ensuring that sensitive data remains secure from unauthorised access. Enabling and managing FileVault is straightforward, offering peace of mind for individual users and organisations alike.


