
Connect Rippling to VMware Workspace ONE to automate MDM enrollment and ensure devices are managed from the moment an employee is hired.
The Rippling–Workspace ONE integration connects Rippling's HR and identity layer with VMware Workspace ONE's unified endpoint management platform. When employees are onboarded in Rippling, Workspace ONE enrollment is triggered to apply device management policies to their work devices. At offboarding, the employee's device enrollments and access certificates are revoked as part of Rippling's termination workflow.
Workspace ONE is used by enterprise and mid-market IT teams for multi-platform device management — covering macOS, Windows, iOS, and Android from a single management plane. Connecting it to Rippling ensures MDM follows the same employee lifecycle as HR and payroll.
IT teams managing Workspace ONE alongside Rippling typically handle MDM enrollment manually as part of device provisioning, disconnected from the Rippling onboarding workflow. This means devices are sometimes shipped before enrollment is complete, and offboarding often leaves former employees with active device management profiles until IT manually processes the removal.
thePeopleStack configures the Rippling–Workspace ONE connection to trigger MDM enrollment as part of the IT onboarding sequence and validates the offboarding trigger removes device management profiles and access certificates. We coordinate with your IT team on device enrollment policies before go-live.

Workspace ONE integrations for thePeopleStack's Rippling clients are structured around US IT device management policies.
Canadian and cross-border operations: for Canadian employees, Workspace ONE enrollment follows the same Rippling-driven lifecycle as US employees, with PIPEDA-appropriate device monitoring configurations applied where required.
VMware Workspace ONE (now Broadcom) is a unified endpoint management platform for managing macOS, Windows, iOS, and Android devices, enforcing security policies, deploying applications, and managing access certificates from a single management plane.
Workspace ONE supports identity provider integrations and SCIM connections. Rippling can serve as the identity source for user provisioning and offboarding within the Workspace ONE environment.
Workspace ONE supports both corporate-owned and BYOD device enrollment through separate enrollment profiles. The Rippling integration triggers enrollment for both profiles based on device ownership type configured in the onboarding workflow.
When a termination is processed in Rippling, Workspace ONE device management profiles can be remotely wiped or unenrolled, and access certificates are revoked as part of the offboarding sequence.
Configuration takes 3–5 hours depending on the number of device platforms and the complexity of enrollment policies.