Wouldn't that defeat the entire point of EFS? EFS-encrypted files can only by accessed by users with the right permissions. If you could just add permitted users, what's the use?

The problem is that he doesn't have the correct permission, and that he's got no back-ups of the key...?