Skip to content
Skip to main content
Mobile Devices & Apps Technical Explainer

What is device encryption?

Device encryption stores data in a form that requires the correct cryptographic keys, normally made available through the operating system's unlock process.

Access depends on live state

Modern phones commonly encrypt by default. After power-on, the main passcode may be required before protected data and biometrics become available. Once unlocked, some keys and sessions can remain accessible until lock, restart or power loss. That is why switching off an unlocked handset may close an opportunity.

Encryption protects data at rest; applications and users can still access it while authorised and unlocked. Some lock-screen, cloud, provider and linked-device evidence remains available separately.

Encryption limits access, not relevance

Record power, restart and unlock state and avoid casual passcode attempts, updates and shutdown. Specialist options depend on model and software. Possession of the handset does not provide the key, while encryption says nothing about who created the protected content.

Key takeaway

Encryption makes access state-dependent: preserve whether keys and sessions may be live, and pursue external records without treating encrypted as evidentially empty.

Reference: MDA-038Mobile Devices & Apps