All sample legal documents

Sample BYOD (Bring Your Own Device) Policy

A worked BYOD policy covering approved devices, mobile security, personal data, monitoring, expenses and offboarding.

Jurisdiction: England and Wales - worked fictional example

Download Sample

An editable Microsoft Word version is available from the interactive page.

Important: This sample provides general legal information only and is not legal advice. Check the law, prescribed forms and signing requirements that apply to your exact jurisdiction and circumstances before use.

# EXAMPLE: BYOD (BRING YOUR OWN DEVICE) POLICY

Date: 10 January 2028

Parties: Moorland Print Studio Limited and its staff

## 1. Purpose

This policy permits Nadia Patel to use her personally owned Pixel 8 Pro for approved email, calendar and the FieldTrack application, subject to a written security check. It is non-contractual unless expressly incorporated.

## 2. Scope

Only devices running a supported operating system, full-disk encryption, screen lock and current security updates may connect. Rooted or jail-broken devices and shared family profiles are prohibited.

## 3. Responsibilities

The employee must keep company data inside the managed container, use multi-factor authentication, avoid public Wi-Fi without the company VPN and never copy client files to personal cloud storage.

## 4. Policy-specific rules

IT Security manages the work container but does not inspect personal photographs, messages or unrelated applications. Proportionate device and access logs are explained in the employee privacy notice.

## 5. Reporting

Loss, theft, suspected malware or an accidental recipient must be reported to the Service Desk within one hour. IT may remotely lock or erase the work container, while preserving personal content where technically possible.

## 6. Process

The company reimburses the documented business proportion of a protective case and data plan up to £35 per month; it does not pay for personal upgrades. A reasonable adjustment may be requested for disability or caring needs.

## 7. Review and approval

Managers approve access with IT, review the arrangement quarterly and withdraw it after consultation if security or role requirements change. On leaving, the employee must return any company equipment and allow work-data removal.

Create a version for your situation

Create a tailored BYOD Policy