# Wipe only corporate data from a lost BYOD phone A selective (corporate) wipe removes only company apps, email, and data from a personal device — leaving the employee's photos, messages, and personal apps untouched. ![Corporate container cleared while the personal side stays intact](https://cdn.manageengine.com/sites/meweb/images/mobile-device-management/images/wipe-corporate-data-from-byod.png) ## The problem An employee loses a personal phone that had work email on it. IT needs the company data gone now — but the employee is (rightly) anxious that a wipe will erase their family photos. Fear of a full wipe is one of the biggest reasons people resist enrolling their own devices at all. ## The feature **Quick answer:** containerization separates work from personal, so a corporate wipe clears only the managed side. MDM Plus provisions a work container (Android work profile / iOS managed apps and accounts). When a device is lost or an employee leaves, you trigger a corporate wipe that removes managed apps, configured accounts, and their data — and nothing else. ## The unique advantage You get the security outcome (company data gone) without the trust cost (personal data intact), which measurably reduces BYOD enrollment resistance. Because the boundary is defined at enrollment, there's no guessing later about what's "work" versus "personal." ## How it looks in the console and device In the console you pick the device and choose Corporate Wipe (versus Complete Wipe). On the device, the work profile and its apps disappear; the personal home screen is untouched. The user keeps using their phone normally. ![](https://cdn.manageengine.com/sites/meweb/images/mobile-device-management/images/corporate-wipe-on-byod.png) ## Use cases in different industries ### Professional & financial services Remove client data from a departing consultant's own phone. ### Healthcare Clear PHI from a personal device without touching the clinician's personal life. ### Any BYOD-heavy org Offboard contractors and seasonal staff cleanly. ### Sales Revoke CRM and email access the moment a rep leaves. ## Tips and troubleshooting 1. Be transparent up front about what a selective wipe does and doesn't touch — publishing a short "what IT can and can't see/do" note dramatically lowers enrollment pushback. 2. Selective wipe only covers managed apps and accounts; anything the user set up personally is out of scope by design. 3. For corporate-owned devices, use Complete Wipe instead to return the device to factory state. ## Related use cases ### Remotely lock or wipe a lost or stolen phone ![A missing device locked remotely from the console](https://cdn.manageengine.com/sites/meweb/images/mobile-device-management/images/remote-lock-and-wipe.png) [Remotely lock or wipe a lost or stolen phone](https://www.manageengine.com/mobile-device-management/mdm-use-cases/remote-lock-wipe-lost-phone.html?utm_source=corporate-wipe-on-byod) iOS, Android, Windows ### Separate work and personal on employee phones ![A managed work profile beside the personal side of a phone](https://cdn.manageengine.com/sites/meweb/images/mobile-device-management/images/separate-work-and-personal.png) [Separate work and personal on employee phones](https://www.manageengine.com/mobile-device-management/mdm-use-cases/separate-work-personal-data-byod.html?utm_source=corporate-wipe-on-byod) Android, iOS ### Enforce passcodes and encryption ![Devices checked against one passcode and encryption policy](https://cdn.manageengine.com/sites/meweb/images/mobile-device-management/images/enforce-passcode-and-encryption.png) [Enforce passcodes and encryption](https://www.manageengine.com/mobile-device-management/mdm-use-cases/enforce-mobile-device-passcode.html?utm_source=corporate-wipe-on-byod) iOS, Android, Windows