Manila: The Department of Information and Communications Technology (DICT) on Tuesday assured strong cybersecurity measures behind the 'Konektadong Pinoy' bill and acknowledged concerns raised by private sector stakeholders.
According to Philippines News Agency, the DICT responded to concerns raised by several cybersecurity and information technology (IT) groups in the country's private sector, such as deregulation and foreign ownership of sensitive data infrastructure. It clarified that deregulation at the expense of security or public interest will never be allowed.
"The Konektadong Pinoy Bill does not weaken the role of the National Telecommunications Commission (NTC). On the contrary, it modernizes and strengthens the NTC's mandate to respond faster and more effectively to digital age challenges," a statement from the DICT read. These include the ability to issue compliance directives on cybersecurity, quality of service, and fair competition under streamlined frameworks.
Furthermore, the DICT assured that foreign-controlled entities will not gain access to critical digital infrastructure without undergoing multi-layered vetting and continuous monitoring. "The bill introduces open access within defined segments-particularly the middle mile and last mile-to address the broadband gap. But backbone and core infrastructure remain governed by existing ownership and security laws, including the Public Service Act and Cybercrime Prevention Act," it stated.
The DICT also clarified that the removal of the franchise requirement is only for certain underserved areas, especially in remote provinces, to accelerate deployment in these areas. "It does not apply to all telcos across the board," it emphasized.
Meanwhile, the department addressed concerns about the three-year grace period for new internet service providers (ISPs), stating that it only refers to minimum standards for legacy compliance, not to active threat management. "We assure the public that there will be no grace period for negligence," it assured.
The new ISPs will be required to comply with baseline cybersecurity controls before they begin operations and will be under the direct supervision of the DICT and the Cybercrime Investigation and Coordinating Center (CICC). The DICT called on stakeholders in the country's digital space to consult with the department, submit position papers, recommend safeguards, and participate in technical working groups. "This law is not an endpoint-it is a starting point for deeper reform, built on transparency, accountability, and collaboration," the statement concluded.
On Monday, the Scam Watch Pilipinas, Women in Security Alliance Philippines (WiSAP), Philippines Chief Information Officer Association (PCIOA), PhilDev S and T Foundation, and BPO (Business Process Outsourcing) Cybersecurity Council expressed support for the bill. However, they also called for stronger safeguards to be embedded directly into the law, expressing concern that certain provisions may unintentionally expose the country to heightened cyber threats, such as hackers, scammers, or state-sponsored actors.