Forum Discussion
Remove Office 365 Pro Plus Remotely from Personal Device After Employment Ends
After the user is terminated and the account disabled/removed, he cannot activate Office anymore, so he will not be able to add to the numbers of active installs. For users that are still active, you can go to the O365 admin portal, select the user and manage the office installs from there (remove devices that you don't recognize). Unfortunately, there is no programmatic way to do this, despite of us asking Microsoft for years...
If you want to tightly control who can install where, you will have to use some MDM solution (Intune) or disable the download altogether.
Very true that they cannot activate more licenses, but that does not stop them from using the applications without the license. They can still access anything in Outlook that was downloaded to their personal computer.
- VasilMichevAug 30, 2019MVP
That's a different issue altogether. If you have concerns about them keeping mails and files on personal devices, you should disable external access from the get go via CA policies or Client Access Rules in Exchange.
- Shaun JenningsSep 04, 2019Iron Contributor
That was my thought, but leadership believes there are other ways to secure the information without disabling the ability for end users to not use the applications on their personal computers.
Personally, we should be using all of the web based applications when not using company devices.
- VasilMichevSep 04, 2019MVP
Yeah, that's why they are leaders, they don't care about minor details 😄 Removing Outlook on its own doesn't really solve anything here, I can easily export all the content of the mailbox and keep it on my device, or wherever I see fit. RMS/AIP can help by protecting individual messages, but I'm yet to see a company that does this for every single message received.