Your privacy and data protection are our top priorities
Effective Date: 1st of February, 2024
Telcotech Solutions Hub Pvt. Ltd. ("Telcotech") processes personal data in compliance with:
Information Technology Act, 2000 & IT Rules, 2011
Digital Personal Data Protection Act, 2023 (DPDP)
EU General Data Protection Regulation (GDPR), where applicable
ISO/IEC 27001:2022 Information Security standards
We act as a Data Fiduciary / Controller and process data lawfully, fairly, transparently, and only for legitimate business purposes.
We may collect:
Name, business contact details, company information, communication records.
Government IDs, financial/billing details, contractual documents — collected only with explicit consent or lawful basis.
We do not knowingly collect data from minors.
Data is processed for:
Service delivery (quotations, contracts, NOC, cybersecurity)
Customer support and communication
Contract execution and billing
Legal and regulatory compliance
Service improvement and security monitoring
Legal grounds include consent, contractual necessity, legal obligation, legitimate interest, or protection of vital interests.
Where required, consent is obtained clearly and may be withdrawn at any time.
Access, correct, or erase data
Withdraw consent
Restrict or object to processing
Request data portability
File grievances or complaints
Requests are handled within legally mandated timelines
Authorized service providers
Contractual partners
Regulatory or legal authorities
All third parties are bound by confidentiality and security obligations.
We maintain an Information Security Management System (ISMS) aligned with ISO/IEC 27001:2022 to protect personal data.
Appropriate technical and organizational safeguards are implemented to prevent unauthorized access, loss, alteration, or misuse of data, in line with GDPR and DPDP requirements.
Security measures are risk-based, periodically reviewed, and continuously improved.
Data is retained only as long as necessary for business or legal consent is withdrawn. purposes, or until Expired data is securely deleted or anonymized.
In case of a personal data breach:
Immediate containment and assessment
Regulatory and individual notification where required
Corrective and preventive actions
Where data is transferred outside India or the EU, appropriate legal safeguards and equivalent security protections are applied in accordance with DPDP and GDPR requirements.
Sumesh Gopalakrishnan
We respond within 30 days, as required by law. You may also approach relevant regulatory authorities if unresolved.
This policy is periodically reviewed and updated to reflect regulatory or operational changes. Continued use of our services indicates acceptance of the updated policy.
We're here to help. Contact us for any privacy-related inquiries.
Contact Us