How can I identify BYOD mobile devices actively using Teams or Outlook?

0
0
Asked By MellowPine42 On

We allow personal iOS and Android devices to access our Microsoft 365 environment through Outlook and Teams. These devices are Microsoft Entra registered, and we need to prepare an audit inventory of the mobile devices that are actually being used to access company resources. What is the best way to distinguish registered devices from devices with recent Outlook or Teams activity?

4 Answers

Answered By QuietFalcon6 On

If unmanaged access is currently allowed, there may not be a complete inventory to discover. Conditional Access can require compliant or managed access, but for BYOD many organizations use app protection policies, or MAM, instead of managing the entire personal phone. That gives you better control over company data without requiring full device enrollment.

AmberLattice24 -

MAM is often a practical compromise for personal phones, but it still does not replace reviewing sign-in activity when the audit asks which devices were actually used.

Answered By CobaltMango7 On

Start with the Microsoft Entra device list and filter the join type to Entra registered. Export the results, then compare them with Entra sign-in logs filtered for Teams and Outlook on iOS or Android. That gives you a useful list of registered devices associated with recent app access, although you may need to match users and device identifiers manually.

Answered By RiverQuartz_8 On

Check the Microsoft 365 usage reports first. They can show which users are accessing Teams or Outlook from mobile devices, which is useful for identifying actual usage at the user level. For device-level details, combine that information with Entra sign-in logs and, if applicable, Exchange Online mobile device data such as the results from Get-MobileDevice.

Answered By NovaCedar31 On

Be careful not to treat device registration as proof that the device is actively being used. A registered personal device may be old or unused, while users can sometimes sign in from unmanaged devices without creating a useful device record. Review sign-in and audit logs, including the application, platform, user, device information, and sign-in date.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.