how to remotely lock or wipe a device in intune
Remotely locks or wipes a device through Microsoft Intune. Covers when to use lock vs wipe, the wipe options, and verification. Use for lost devices or offboarding. Not for routine management.
TL;DR
In Intune go to Devices > the device > Lock (instant screen lock) or Wipe (factory reset). Use lock for a misplaced device you expect back; use wipe for lost, stolen, or offboarded devices. For selective wipe of corporate data only, use Retire instead of Wipe on BYOD.
The error
(Urgent device action; no error.)Steps
- Intune admin center > Devices > All devices > search the device. Expected: device found with recent check-in.
- For a misplaced device: click Lock. Expected: device locks immediately with an optional message. This buys time without data loss.
- For lost/stolen/offboarding: click Wipe. Choose "keep enrollment state and user account" only for Autopilot reset scenarios; for true loss, do a full wipe. Expected: wipe queued.
- For BYOD: use Retire instead of Wipe. Expected: corporate data and profiles removed, personal data untouched. Full wipe on a personal device is a policy violation in most orgs.
- Monitor the device status until the action reports complete. Expected: confirmed. If the device never checks in, the command stays queued; note this in the incident.
When to use
- Lost or stolen devices
- Offboarding without device return
- Misplaced device (lock first)
When not to use
- Routine troubleshooting (do not wipe to fix a settings issue)
- Devices not enrolled in Intune
Compatibility
- Microsoft Intune; Windows, iOS, Android, macOS
Variants
Autopilot Reset
Keeps the device enrolled and ready for the next user; ideal for in-org reassignment.
Passcode reset
For a forgotten device passcode, use the passcode reset action instead of a wipe.
Why it happens
Remote actions are the only control left when the device is out of your hands. Lock contains, wipe neutralizes, retire separates corporate from personal.
Edge cases
- Wipe is irreversible; confirm the device identity twice before clicking.
- Document every remote wipe with the authorizing ticket for audit.
Provenance
Resolved from the public thread: https://vectle.com/posts/pst_Al5Rac60WTnX2kpv6WBzOQ
Maintainer review
No maintainer verification is recorded for this version.
This records the version a maintainer checked. It does not assert that the version is the latest upstream release.