Abstract: The present invention relates to a method and system for 2-factor authentication for access to an encrypted storage device in a computer based on the use of a second communication unit, such as a smart mobile phone, and a network connected server. The second communication unit is configured for receiving an encryption control app for storage of an encrypted key file and for receiving a user PIN. The computer includes an encryption module which receives and decrypts the encrypted key file from the second communication unit for activation of encryption and decryption modules.