RTDS NETWORK ICT SOLUTIONS INC.
Website Data Privacy Policy
Effective Date: November 2025
Last Updated: November 2025
Introduction
RTDS NETWORK ICT SOLUTIONS INC. (“RTDS NETWORK”, “we”, “our”, or “us”) values your privacy and is committed to protecting the confidentiality, integrity, and availability of your personal data.
This Website Data Privacy Policy explains how we collect, process, store, share, and protect personal information in accordance with the Data Privacy Act of 2012 (Republic Act No. 10173), its Implementing Rules and Regulations (IRR), and related issuances by the National Privacy Commission (NPC).
By accessing or using our website www.rtdsnetwork.com, or any of our online systems and mobile applications, you signify that you have read, understood, and consented to the collection and processing of your personal data as described in this policy.
Basis of Processing Personal Information
We process personal information under the following lawful bases:
-
The data subject has given his or her consent for the collection and processing of their personal data.
-
The processing is necessary for the purposes of the legitimate interests pursued by RTDS NETWORK or by third parties to whom the data is disclosed, except where such interests are overridden by the fundamental rights and freedoms of the data subject as protected under the Philippine Constitution.
Basis of Processing Sensitive Personal Information
We process sensitive personal information only when:
-
The data subject has provided specific consent prior to the processing, or
-
In cases of privileged information, all parties to the exchange have consented before processing.
Purpose of Processing
Personal data is collected and processed to:
-
Establish and verify the identity of individuals registered in our systems.
-
Facilitate service subscription, billing, and technical support.
-
Prevent and minimize fraudulent activities.
-
Ensure efficient account management and service delivery.
-
Comply with legal and regulatory obligations.
Data Subjects
The data subjects covered by this policy include:
Categories of Personal Data Collected
We collect and process the following categories of personal data:
Recipients of Personal Data
Personal data may be disclosed to the following authorized recipients:
-
RTDS NETWORK employees, in connection with customer or employee transactions.
-
Counterparties or business partners for legitimate service-related operations.
-
Customers where necessary for verification or inter-account interactions.
Data Controller Information
RTDS NETWORK ICT SOLUTIONS INC. acts as the Personal Information Controller (PIC) for all personal data collected and processed through its website and systems.
The company does not outsource or subcontract data processing to third parties without proper data sharing or processing agreements in place.
Data Life Cycle
a. Data Collection
Data is collected during:
-
Subscriber registration and onboarding
-
Payment processing and billing transactions
-
Customer support and service requests
b. Data Retention
Customer data is retained for two (2) years from the date of account termination, in compliance with audit, billing, and regulatory requirements. After this period, data is securely deleted.
c. Data Disposal or Destruction
Digital records are permanently deleted from all databases using secure erase tools.
A Data Disposal Log is maintained by the IT Department and reviewed by the Data Protection Officer (DPO) to ensure compliance and traceability.
Data Security Measures
a. Organizational Measures
-
Appointment of a qualified Data Protection Officer (DPO).
-
Implementation of a Privacy Management Program (PMP).
-
Regular employee training and privacy awareness sessions.
-
Strict access control limiting data handling only to authorized personnel.
b. Physical Measures
-
Restricted access to data centers and server rooms using ID access systems.
-
24/7 CCTV surveillance and physical security.
-
Visitor logging and workstation security policies (e.g., no credential sharing, automatic screen lock).
c. Technical Measures
-
Deployment of firewalls, antivirus, and data encryption.
-
Regular system updates, patching, and vulnerability testing.
-
Two-Factor Authentication (2FA) for employee system access.
-
Secure backup and disaster recovery mechanisms.
Data Sharing and Transfer
Personal data may be transferred or shared under strict compliance with the Data Privacy Act.
-
Cross-border Data Transfer: Some data may be transferred outside of the Philippines for storage, processing, or backup purposes, subject to data protection safeguards.
-
Data Sharing Agreements (DSA): RTDS NETWORK maintains formal DSAs with partners and service providers to ensure that all shared data remains protected and processed lawfully.
Automated Decision-Making and Profiling
The system employs automated decision-making processes for certain service-related functions such as fraud prevention, credit verification, or account management.
-
Automated decisions are based on legitimate interest and customer consent obtained during registration or acceptance of the RTDS Terms and Conditions.
-
Automated processes are periodically reviewed to ensure fairness, transparency, and compliance with the Data Privacy Act of 2012.
Lawful Basis of Processing
The processing of personal data is based on legitimate interest and informed consent provided by the data subject.
Consent is obtained upon:
Legitimate interest applies for:
Data subjects may withdraw their consent at any time by contacting the RTDS Data Protection Officer (DPO). All withdrawals will be properly recorded and respected unless processing is required by law.
Data Transfers Outside the Philippines
Yes, personal data may be transferred or stored outside the Philippines, subject to compliance with applicable data protection requirements and the maintenance of equivalent safeguards in accordance with NPC standards.
Public-Facing Systems
RTDS NETWORK operates external-facing online systems, including web-based and mobile applications, for customer registration, billing, and support. These systems are accessible to both internal employees and external users under secure authentication and encryption protocols.
Rights of the Data Subject
Under the Data Privacy Act, you have the following rights:
-
Right to be Informed
-
Right to Access
-
Right to Object
-
Right to Erasure or Blocking
-
Right to Rectification
-
Right to Data Portability
-
Right to File a Complaint with the National Privacy Commission
You may exercise these rights by contacting the RTDS NETWORK Data Protection Officer (DPO).
Contact Information
For questions, requests, or concerns related to this Privacy Policy or your personal data, please contact:
Data Protection Officer (DPO)
RTDS NETWORK ICT SOLUTIONS INC.
Stall 2E, RAQ Square Building, Corner Lemens, MacArthur Highway, Mabiga, Mabalacat City, Pampanga, 2010
info.dpo@rtdsnetwork.org
+63 976 524 3517
www.rtdsnetwork.com
Policy Updates
RTDS NETWORK reserves the right to update or modify this Privacy Policy at any time to reflect changes in legal, operational, or technological requirements. Any updates will be posted on this page with a revised “Last Updated” date.
Consent
By continuing to use our website, applications, or services, you confirm that you have read, understood, and agreed to the terms of this Website Data Privacy Policy and consent to the collection and processing of your personal data as described herein.