Use encryption inside the VM, thus encrypting the contents of the VMDK, rather than secuirng access to VMDK itself which is rather hard. On boot, the VM would require you to enter your passphrase to continue. This protects this VM from other vCenter admins, and addresses the issue of connecting the VMDK to another VM.