OptimIT Layer Design
Legal Framework

Privacy Policy

Effective Date: January 23, 2026

OptimIT Service (“the Company,” “we,” “us,” or “our”) is an enterprise provider of IT infrastructure, cybersecurity, and telecommunications. This policy serves as our formal commitment to the protection and ethical management of all technical and corporate data processed within our managed service environments.


1. Information Collection and Technical Scope

We collect data essential for the structural maintenance and security of your business network. This is categorized into:

  • Business Identification: Administrative contact information, corporate billing details, and verified credentials.
  • Network Telemetry: IP addresses, MAC addresses, network topology maps, and system logs required for 24/7 monitoring and performance optimization.
  • Security Telemetry: Firewall traffic metadata, threat signatures, and endpoint behavioral logs used for proactive cyber defense.

2. Operational Utilization of Data

Data is utilized exclusively to maintain the operational integrity of your infrastructure. This includes performing automated backups, managing disaster recovery failovers, and optimizing VoIP and telecommunications routing to ensure global connectivity.

3. Data Security and Zero-Trust Framework

All client data is treated as highly confidential. Our protection framework includes:

  • Encryption: Data at rest is secured via AES-256 standards; data in transit is protected by TLS 1.3 tunnels.
  • Access Control: We operate on a Zero-Trust basis. Access to client environments is restricted to authorized engineers using Multi-Factor Authentication (MFA).

4. Third-Party Disclosures

OptimIT Service does not sell or lease client data. Disclosure is limited to vetted technical partners—such as Tier-1 cloud providers (AWS, Azure) or hardware vendors (Cisco, Fortinet)—only when necessary to fulfill hardware warranties or cloud hosting requirements.

5. Retention and NIST-Standard Destruction

Upon the termination of a service agreement, we follow NIST SP 800-88 guidelines for data destruction. Configuration logs are purged within 30 days, and all backup volumes are securely wiped from our storage arrays.

6. Contact and Compliance Requests

For inquiries regarding data residency, GDPR/SOC2 compliance, or to request a security audit, please contact our compliance office:

Email: [email protected]

Address: B-19, Hartron Complex, Electronic City, Sec-18, Near Church of The Epiphany, Gurugram, Haryana 122001