Overview
Enabling mobile device management allows administrators to remotely wipe corporate data from lost or compromised devices. Depending on your organization's protection pack, you'll configure either Basic or Advanced mobile management.
Prerequisites
Administrator access to the Google Admin console
For Advanced management: a Google Workspace edition that supports it (Business Plus, Enterprise Standard, Enterprise Plus, or Education Standard and above). Not available on Business Starter, Business Standard, Education Fundamentals, or Essentials.
Instructions
Sign in to the Google Admin console
Navigate to Devices > Mobile & endpoints > Settings > Universal
Under Mobile management, select the appropriate option for your organization:
Standard Protection β Select Basic (Agentless). This enables simple password controls, remote account wipe, and compromised device protection. No app is required on users' devices.
Strict Protection β Select Advanced. This enables full remote device wipe, stronger password enforcement, iOS app management, and additional security policies. Users will need to install the Google Device Policy app on their mobile devices.
Click Save
β οΈ Basic management only allows remote wipe of the corporate account from a device. Advanced management allows wiping all data from the device entirely. Make sure users are aware of this before Advanced management is enforced.
Note: Advanced management is not available on all Google Workspace editions. If the option is grayed out, your organization may need to upgrade its license.
