
-
Determine what the end date is with Human Resources, what ALTA equipment they may have, when it will be returned, and if they have any accounts billed under ALTA’s Verizon plan
-
If the employee had meetings that were recurring and have not been cancelled or reassigned, have the employee do so.
-
When end date occurs, disable the account in Active Directory. The account would appear in the ALTA Users container. Do not delete or remove the account.
-
Drag and drop the user account from ALTA Users to Disabled Users.
-
Remove the user from any Active Directory Groups, specifically ALTA VPN.
-
Go to the MS Teams Admin Portal.
-
Locate the phone number assigned to that user.
-
Unassigned the phone from the user.
-
Next steps are done in Office 365.
-
In Office 365, go to Users > Active Users.
-
Find the account for the departing employee. Double-click on the account and select Block sign-in
-
Next, go to the Exchange admin in Office 365.
-
Go to Recipients > Mailboxes.
-
Locate and single click on the account for the departing user.
-
In the pane that appears and in the section that says, “Convert to Shared Mailbox”, choose Convert.
-
This will take the mailbox and convert it to a shared mailbox.
-
Next, choose to Edit the newly created Shared Mailbox.
-
Go to Mailbox Delegation.
-
Determine with remaining staff members require access to the mailbox and add them to Full Access group.
-
Determine with remaining staff if they require access to send as the previous staff member and add them to the Send As group.
-
Exit the Exchange Admin, but remain in 365 Admin.
-
If you need to set an Automatic Reply (such as a response that the employee is no longer with ALTA) Go to the Microsoft 365 Admin Center.
-
Locate Groups > Shared mailboxes.
-
Select the shared mailbox. User who has a Microsoft Exchange mailbox.
-
On the flyout menu on the right, locate Mail settings > Automatic replies (if it's a shared mailbox, just locate Automatic replies on the flyout).
-
Create the Out of Office Message to state the employee is no longer with ALTA and make sure there is a message ALTA that is monitoring emails
-
Go to the Microsoft 365 Admin Center.
-
Locate Users > Active Users
-
Select the account for the departing staff member.
-
Go to Account.
-
Select Block Sign-in. This will block the user from being able to sign into Office 365.
-
Scroll to the bottom of this screen.
-
Go to Licenses and Apps.
-
Remove the any licenses assigned to the staff member.
-
Go to Multifactor authentication > Manage multifactor authentication
-
Select the departing staff member.
-
Choose to “Delete all existing app passwords generated by the selected users”
-
This will revoke the staff member’s 2-Factor Authentication devices.
-
Next, Remove the user from the ALTA VPN Group in Active Directory
-
Remove employee from the website and remove any references of them on static pages listing them as a contact. Work with Communications in order to determine which pages they should be removed from.
-
Whenever the user’s equipment is returned, determine if there is any documents, files, accounts, or passwords on the computers or phones that ALTA needs.
-
Wipe or System Restore any devices.