User guide
• if you reset the device to the factory default settings, the IT policy that is stored on the device
• if a user selects the Include third party applications option or the User Installation Application option on the device, all
third-party applications and application data
If you or a user turned on content protection, the device uses a memory-scrub process to overwrite the application storage
on the device and built-in media storage. The memory-scrub process complies with United States government
requirements for deleting sensitive user data, including
US Department of Defense Directive 5220.22-M and NIST Special
Publication 800-88.
For BlackBerry Device Software 5.0 and later, if you configure the Media Card Format on Device Wipe IT policy rule, the
device can delete all user data from a media card. By default, the user can choose to delete third-party applications and
the user data on the media card when the user permanently deletes all device data.
When a device deletes all device data
The BlackBerry device is designed to delete all device data from the device storage space when any of the following events
occurs:
• The user clicks Wipe Device, Wipe Handheld, or Security Wipe in the security options on the device.
• The user types the device password incorrectly more times than the Set Maximum Password Attempts IT policy rule or
the password option on the device permits. The default value is ten attempts.
• The user runs the application loader tool and types the device password incorrectly more times than the Set Maximum
Password Attempts IT policy rule permits.
• The user uses the application loader tool to delete all user data and application data on the device. The user can
choose not to delete the device applications.
• You send the Delete all device data and remove device IT administration command to the device with or without a delay
(in hours), to the device. The maximum delay is 168 hours (7 days).
• You click the Remove user data from current device option in the BlackBerry Administration Service after you connect
the device to the BlackBerry Administration Service. This option deletes all data and applications from the device even
if service books do not exist on the device.
For more information about the security options on the device, see the user guide for the device.
Using IT policy rules to specify when a device must
delete device data
You can configure the following IT policy rules to require that a BlackBerry device automatically deletes device data after a
specific time or under specific conditions.
Security Technical Overview Device storage space
50