# What is Bring Your Own Device (BYOD)?

> Bring your own device (BYOD) is the practice of using a personally owned smartphone, tablet, or computer for work or access to organizational data and services.

- Canonical URL: https://yellowcube.eu/glossary/bring-your-own-device/
- Publisher: Yellow Cube
- Language: en
- Contact: hello@yellowcube.eu

## Content

BYOD is an ownership and use arrangement, not a security technology. It changes organizational control of the device and creates security and privacy interests for both parties.

A BYOD program should define permitted work, eligible users and devices, access levels, security conditions, data separation, monitoring, support, incident handling, exit procedures, and consequences of refusing or losing eligibility.

### Key points

- **Choose the access model:** Decide whether to manage the device, manage work applications and data, provide browser-based or virtual access, or combine approaches according to risk and user activity.
- **Set transparent conditions:** Explain enrollment, telemetry, acceptable use, organizational access, remote removal or wiping, support, data ownership, reimbursement, legal preservation, and offboarding before participation.
- **Limit organizational exposure:** Use appropriate authentication, device and application signals, least privilege, data controls, session restrictions, patch requirements, and rapid revocation without assuming the personal environment is trusted.
- **Important limitation:** BYOD can reduce organizational control while increasing visibility into a person’s device. Management cannot guarantee device integrity, and broad monitoring or wiping can affect private data; privacy, employment, and legal requirements vary by jurisdiction and need qualified review.

### Related terms

[Mobile security](<https://yellowcube.eu/glossary/mobile-security/>) · [Mobile device management (MDM)](<https://yellowcube.eu/glossary/mobile-device-management/>) · [Conditional access](<https://yellowcube.eu/glossary/conditional-access/>) · [Zero trust network access (ZTNA)](<https://yellowcube.eu/glossary/zero-trust-network-access/>) · [Data protection](<https://yellowcube.eu/glossary/data-protection/>)

### Sources

[NIST SP 1800-22, Mobile Device Security: Bring Your Own Device](https://csrc.nist.gov/pubs/sp/1800/22/final) · [NIST SP 800-124 Rev. 2, Guidelines for Managing the Security of Mobile Devices in the Enterprise](https://csrc.nist.gov/pubs/sp/800/124/r2/final) · [UK NCSC, Bring Your Own Device](https://www.ncsc.gov.uk/collection/device-security-guidance/bring-your-own-device)

## Attribution and scope

This Markdown representation is generated from the same approved content records as the canonical HTML page. Cite the canonical URL above when referencing this material. Product and service descriptions are informational; confirm project-specific requirements with Yellow Cube.

