3 ms·
The most likely explanation is that in order to have access to internal corporate resources, the Apple device needs to be managed via MDM [1]. MDM could probab
by no_circuit 5y ago
The most likely explanation is that in order to have access to internal corporate resources, the Apple device needs to be managed via MDM [1]. MDM could probably enable backups. And then Apple has the ability to decrypt backups.
Another possibility is through the course of employment, the employee installs the internal dev version of an app and had to explicitly grant trust to it. [2] So even if the backup option is not used, the internal version of a messaging app could drop a second copy of messages to a database for audit purposes if needed later. It can be easy to forget that the messaging app you are using isn't the public version.
In short, this really shouldn't be surprising when working in a corporate environment that may have the privilege and/or obligation to monitor employee communications. The key takeaway is never use a business device for personal communications. If you granted your employer privileges to your device through a method like one of the ones above, consider that device compromised unless you factory reset it. If you are in a situation where the employer is requiring MDM and/or trust, then they should be buying you a separate phone for business purposes.
[1] https://support.apple.com/guide/deployment/intro-to-apple-platform-deployment-dep2c1b2a43a/web https://support.apple.com/guide/deployment/intro-to-apple-pl...
[2] https://support.apple.com/en-us/HT204460 https://support.apple.com/en-us/HT204460