Skip to main content

Complete Tenant Offboarding Checklist

This checklist walks you through the complete process of removing a customer tenant from Guardz. The steps must be completed in order — skipping any step can result in SentinelOne agents re-registering automatically, stale configurations remaining in connected systems, or the deletion failing.

Important: Do not attempt to delete the organization before completing all the steps below. If SentinelOne agents are still active when you delete the Guardz customer record, they will re-register automatically and the customer will reappear in your account.

Step 1 — Deactivate all security controls

Navigate to the customer's workspace, go to Security Controls, and deactivate each active control.

Step 2 — Remove all devices

Go to the Devices page for the customer and remove all listed devices.

Step 3 — Decommission SentinelOne agents in the SentinelOne console

Removing devices in Guardz only deletes the record — it does not uninstall the SentinelOne agent from the endpoint. If the agent is still installed, it will detect the deletion and re-register automatically.

Complete these steps in the SentinelOne console:

  1. Open the SentinelOne console.

  2. Navigate to Sentinels.

  3. In the Filters panel, set Decommissioned agents to Yes to reveal any agents that may not be visible by default.

  4. Select the agents belonging to this tenant.

  5. Decommission the agents.

Step 4 — Remove Guardz apps from Microsoft 365

In the customer's Microsoft 365 tenant, go to Enterprise Applications and remove all Guardz-related applications.

Step 5 — Delete the organization

Only after completing all steps above, delete the customer organization from Guardz. For the full deletion procedure and any blockers you encounter, refer to the Delete Your Account article.

Did this answer your question?