How to add a password to a folder in Windows 10 Pro
Windows 10 Pro does not provide a simple “set password” button for an ordinary folder. Instead, you can protect files by placing them in an encrypted archive, using Windows Encrypting File System, or restricting access through user account permissions. The best method depends on whether you need to share the files, protect them from other household users, or secure confidential documents on your own computer.
For many Australian households, an encrypted archive is the most practical choice. It works well for tax documents, scanned Medicare records, rental paperwork, photographs, and files stored on a laptop used by several family members. It can also protect a folder before it is copied to a USB drive or sent through a cloud storage service over an NBN connection.
Windows 10 Pro includes stronger security controls than Windows 10 Home, including EFS encryption and advanced NTFS permissions. These tools are useful, but they can cause problems if you forget the password, change user accounts, or reinstall Windows without backing up your encryption certificate.
A password is only one part of file protection. A strong Windows sign-in password, automatic screen locking, current security updates, and careful handling of email attachments all reduce the risk of someone opening private data. If you are reviewing general digital safety practices as well, these digital safety resources can provide useful background for everyday users.
Choose the right protection method
An encrypted ZIP or 7z archive is usually the easiest way to protect a folder with a password. You can open it with a password, move it between computers, and store it on removable media. This method is suitable when you need to protect a small collection of documents or photographs rather than keep a working folder permanently encrypted.
Windows 10 Pro’s Encrypting File System, or EFS, encrypts individual files for a specific Windows user account. It is convenient for files that remain on one NTFS-formatted drive, but it is less suitable for sharing. If the user profile is damaged and the EFS certificate was not backed up, access to the encrypted files may be lost.
NTFS permissions control which Windows accounts can open, change, or delete a folder. They are useful on a family computer in Brisbane, Melbourne, or Perth where each person has a separate account. However, permissions are not a replacement for encryption. An administrator account may still be able to take ownership of files, and permissions do not protect data if the drive is removed and accessed elsewhere.
Protect a folder with an encrypted archive
Windows 10 can create a standard compressed folder, but its built-in ZIP tool does not offer a reliable modern option for adding a password. For password-protected archives, install a reputable utility such as 7-Zip from its official source. Free archive software is widely available in the Australian consumer market, including through downloads recommended by well-known computer retailers, but avoid installers bundled with unrelated programs.
After installing 7-Zip, right-click the folder you want to protect and choose 7-Zip, followed by Add to archive. Select 7z or zip as the archive format, then enter a password in the encryption section. AES-256 encryption is a strong choice where it is available. Confirm the password carefully, because the program cannot recover it if it is forgotten.
Choose a password that is long and unique, such as several unrelated words combined with numbers and punctuation. Do not use a suburb, football team, child’s name, date of birth, or a familiar pattern such as “Sydney2026”. Australian addresses, postcodes, and public holidays are easy for someone close to you to guess.
When the archive has been created, open it and test the password before deleting the original folder. Keep the original temporarily until you know the archive contains every file and opens correctly. Once verified, remove unprotected copies from the Recycle Bin and check cloud synchronisation folders, Downloads, email attachments, and USB drives for duplicates.
Use EFS encryption on Windows 10 Pro
EFS is built into Windows 10 Pro and can encrypt a folder without installing another program. Right-click the folder, choose Properties, select Advanced on the General tab, tick Encrypt contents to secure data, and select OK. Apply the change to the folder, its subfolders, and its files when Windows presents that option.
EFS normally links the encryption to your Windows user account. You can continue working with the files as usual while signed in, but another account on the same computer will not automatically be able to open them. This makes EFS useful for personal work folders on a shared desktop.
EFS is not available on every drive or file system. It generally requires an NTFS volume, and copying encrypted files to some external drives, network locations, or non-NTFS media may change how protection works. Test the process with a small, unimportant folder before using it for valuable information.
Back up the EFS certificate before relying on this method. Press Windows key + R, type certmgr.msc, and press Enter. Open Personal, then Certificates, locate the certificate associated with Encrypting File System, right-click it, and choose All Tasks > Export. Export the private key and protect the resulting backup with a separate strong password. Store it securely, rather than leaving it in the same folder as the encrypted files.
Control access with Windows user permissions
Permissions are helpful when the main goal is to stop another account on the same computer from browsing a folder. First, create separate standard user accounts through Settings > Accounts > Family & other users. Avoid giving administrator rights to ordinary accounts unless there is a clear reason.
Right-click the folder, choose Properties, and open the Security tab. Select Edit, choose the relevant user or group, and adjust permissions such as Read, Modify, or Full control. For a private folder, you may remove access for broad groups and grant access only to the intended Windows account. Apply changes carefully, because removing permissions from the wrong account can lock you out.
This approach works well for a shared household computer used for schoolwork, online banking, and personal documents. It does not create a portable password-protected folder, and it does not encrypt files against someone who can start the computer with another operating system or remove the drive.
For family computers, Windows 10 Pro also includes useful account and activity controls. The Family Safety setup guide explains how to manage family accounts and related settings, while folder permissions remain the better tool for controlling access to specific local files.
Avoid common password and backup mistakes
A protected folder can still be exposed if an unencrypted copy exists elsewhere. Search File Explorer for file types such as .docx, .pdf, .jpg, and .xlsx after moving sensitive data. Check the Desktop, Downloads, OneDrive folders, email attachments, and the temporary folders used by document-scanning applications.
Do not save the archive password in a plain text file beside the archive. A password manager is safer, provided its master password is strong and recovery details are current. If several trusted adults need access, share the password through a secure channel rather than placing it in a public family chat.
Australian privacy obligations also make sensible storage important for some organisations and sole traders. The Privacy Act 1988 and Australian Privacy Principles may apply when a business handles personal information, while individuals still benefit from limiting unnecessary copies of identity documents, tax records, and Medicare-related paperwork. A password-protected archive supports good practice, but it does not replace a complete privacy and backup policy.
Make at least one backup that is separate from the computer. Keep the backup encrypted, label it without revealing its contents, and test restoration occasionally. A locked folder that cannot be recovered after a hard-drive failure is not a successful security plan.
Quick checks for secure folders
Use these checks before deleting the unprotected original:
- Open the archive or encrypted folder using the correct Windows account.
- Confirm that every important file is present and readable.
- Check that no duplicate copies remain in Downloads or cloud folders.
- Store the password or recovery certificate in a separate secure location.
Use these habits whenever you handle confidential files:
- Lock the screen with Windows + L when leaving the computer.
- Install Windows updates and restart when required.
- Use separate standard accounts for other household users.
- Avoid opening password-protected archives received from unknown senders.
For most people, an encrypted 7z archive provides the clearest balance of simplicity and strong protection. EFS is convenient for a private NTFS folder that stays on one Windows installation, while NTFS permissions suit shared computers where separate user accounts are already in place. Choose one method, test it with non-critical files, and keep a recovery copy before moving important documents.
Create the protected folder, verify that the password works, remove unsecured duplicates, and record the recovery details in a safe place. These steps provide practical protection for personal documents on a Windows 10 Pro computer without relying on hidden folders or easily guessed names.