Protect accounts and business data when someone leaves by transferring ownership, revoking access and preserving required records through an authorised, documented process.
Step-by-step checks
1. Confirm authority and timing
Use an approved HR or management instruction with the effective date and responsible person. Avoid informal access changes based on hearsay.
2. Inventory access and ownership
List email, identity provider, cloud storage, finance, CRM, social, domain, devices, shared vaults, API keys and third-party applications.
3. Preserve required business records
Transfer ownership and retain mail or files according to verified legal, contractual and company requirements before deleting or reassigning anything.
4. Revoke active access
Disable sign-in, sessions, app passwords, tokens, VPN, remote access and physical credentials. Rotate shared secrets the departing person knew.
5. Recover managed equipment
Record returned devices and accessories. Protect evidence and business data before wipe, reissue or disposal under the organisation policy.
6. Verify after the change
Confirm delegated mail, forwarding, shared links, admin roles, billing ownership and recovery contacts. Keep an auditable completion record.
When to stop
Do not access personal accounts, erase evidence or delete regulated records without verified authority and retention requirements. Escalate disputed or high-risk departures to qualified legal and security advisers.
What to tell an expert
Share the device model, operating system, exact symptom or error, when it began, what changed beforehand, and which checks you completed. Do not send passwords, one-time codes, encryption recovery keys, or unnecessary personal files.
Official reference
This Supportia guide was prepared with current official guidance as a factual baseline. Interface names can still vary by device and version. Open the official reference.
Did this solve your problem?
Your answer helps Supportia prioritize updates. No account or email is required.
