Republic Act No. 10844, the Department of Information and Communications Technology Act of 2015, created the DICT as the executive department responsible for national ICT planning, development, and promotion. It provides the institutional foundation for government digital transformation, connectivity policy, e-government coordination, cybersecurity programs, and ICT capacity building.
Direct answer: The DICT is the Philippine government’s central policy, planning, coordinating, implementing, and administrative entity for the national ICT agenda. It does not replace the independent or sector-specific powers of regulators, privacy authorities, law-enforcement agencies, or other departments.
For the broader business and public-sector modernization framework, see Cybercode’s Digital Transformation Philippines hub.
Core DICT powers and functions
| Function | What it means |
|---|---|
| Policy and planning | Formulate, recommend, and implement national ICT plans, policies, and standards |
| Public access and infrastructure | Promote connectivity, universal access, competition, investment, and efficient ICT infrastructure |
| E-government | Coordinate interoperable government systems, shared services, and digital delivery |
| Cybersecurity | Develop and coordinate national measures for protecting networks, systems, and critical information infrastructure |
| Industry development | Support ICT industries, innovation, investment, and a skilled digital workforce |
| Consumer and user interests | Promote secure, reliable, affordable, and accessible ICT services within the department’s mandate |
DICT’s cybersecurity role
The department develops national cybersecurity policy and programs, coordinates government incident preparedness, supports capacity building, and works with public and private operators on resilience. It may operate or support response structures and issue applicable government ICT standards.
DICT is not the sole place to file every cybercrime complaint. Criminal investigation and prosecution remain with agencies such as the NBI, PNP, DOJ, and their specialized units. The Cybercrime Investigation and Coordinating Center has its own coordinating functions. Personal-data breach regulation belongs to the National Privacy Commission. See Cybercode’s reporting directory for the right route.
Agencies attached or coordinated under the Act
RA 10844 reorganized the government’s ICT machinery by transferring functions, personnel, assets, and programs from predecessor offices and attaching specified bodies for policy and program coordination. Attachment does not erase an agency’s statutory independence or distinct enforcement mandate. In particular, the NTC regulates telecommunications, the NPC administers the Data Privacy Act, and the CICC performs functions under the Cybercrime Prevention Act.
Relationship to newer digital laws
- E-Governance Act: RA 12254 expands the government-wide operational framework for digital public services, interoperability, shared infrastructure, and data governance. Read Cybercode’s RA 12254 guide.
- Cybercrime Prevention Act: RA 10175 defines cybercrime offenses and institutional responsibilities; RA 10844 supplies part of the executive ICT and cybersecurity architecture.
- Data Privacy Act: RA 10173 governs processing of personal data. DICT technical policy does not override NPC authority or privacy obligations.
- PhilSys Act: RA 11055 provides the national identification framework used in many digital-service and identity-verification contexts.
Practical implications for government agencies
- Align ICT plans, architectures, procurements, and security controls with applicable DICT policies and standards.
- Assign clear ownership for systems, data, risk, continuity, and incident reporting.
- Use interoperable and reusable components where lawful and cost-effective.
- Build privacy, cybersecurity, accessibility, and records management into projects from the start.
- Coordinate incidents with the correct agency instead of treating every digital problem as solely a DICT matter.
- Measure public-service outcomes, system reliability, security performance, and adoption.
Frequently asked questions
Does DICT investigate online scams?
DICT may support national cybersecurity and coordination, but criminal complaints are ordinarily investigated by law-enforcement agencies. Victims should also notify the affected bank, platform, or service provider.
Is the National Privacy Commission part of DICT?
RA 10844 provides for attachment for policy and program coordination, but the NPC exercises the independent regulatory functions given to it by the Data Privacy Act.
Does DICT regulate telecom companies?
The National Telecommunications Commission retains its regulatory mandate. DICT handles broader executive policy, planning, development, and coordination functions.
Primary authority
Read the official text: Republic Act No. 10844 on Lawphil.
This article provides general legal information. Current executive issuances, DICT circulars, and later statutes may add operational requirements.

