Your compliance service for the protection of personal data in the health sector
Alcoam by Design takes on the mission of Data Protection Officer (DPO) and delivers consulting, auditing or training services to ensure the compliance of your healthcare, health research and/or health innovation-driven organisation: GDPR for the EU, nFADP for Switzerland, PIPEDA and applicable provincial law for Canada
A unique approach to the services for the protection of personal data and privacy in healthcare and health research
We work with health not-for-profit or public sector organisations, as well as for private R&D companies (MedTech, BioTech, HealthTech, Pharma, etc.). Our commitment to patients, the public interest and innovation for health ensure the importance of the ethical aspect of our mission.
The experience of our data privacy managers in health data protection
Our services for health data protection

Internal or data processoraudit

Data Protection Officer DPO

Training in health personal data privacy

Risk management in information security and data privacy
An international
coverage for clinical studies
For sponsors of international clinical studies: our DPOs have the knowledge and apply all local legal and regulatory requirements applicable to your health personal data processing activities, and appropriate guarantees for each international data transfer carried out as part of your study are put in place.
For sponsors of clinical studies established outside the European Union, and recruiting patients in the European Economic Area (EEA): we offer you a GDPR service (Article 27 – Representatives of data controllers not established in the Union) that complies with the obligation of independence with the DPO mission if you also entrust us with it.
Ethics and transparency for health data, discover our guiding principles:
The work of our data privacy managers in the field of healthcare and health research is based on two values that are essential to our customers’ trust: independence and integrity.
Independence is required in order to carry out an advisory and support role, the purpose of which is to:
- provide neutral and objective assessments of your compliance status;
- offer you pragmatic solutions tailored and proportionate to the risks for your organisation and for the individuals whose sensitive personal data you process.
The DPO’s integrity is essential:
- due to their role as a trusted intermediary for individuals potentially impacted by the processing of their personal health data;
- as well as for being the designated contact for supervisory authorities, where required (this is the case in the EU, for example with the CNIL in France).
The expectations of our customers en terms of protection of health data

Expertise
Our services are designed and delivered by professionals with significant experience as healthcare and research DPO.

Pragmatism
We take into account and adapt to the mission, strategy and size of each of our customers.

Reactivity
We are organised to deliver to often demanding deadlines while maintaining our focus on the quality of our responses.

Service continuity
Our workload plan, our tools and our team organisation take into account the need for continuity of service, which is essential for DPO missions.
Getting to know us
We are a team of certified DPOs, all specialised in healthcare and research, with the qualities needed to succeed in missions entrusted to us:
- Experience in our profession
- Knowledge of business processes, in healthcare, research and innovation
- Expertise in legal matters
- Know-how in information security management, auditing, and training.
Data protection and privacy news
You can put your trust in us to meet your need for compliance in personal data protection and privacy in the health area:
Do you have a specific question related to data protection in the heath area? Ask us your question, and we will be happy to answer it at no cost to you.
Would you like to be put in touch with a member of our customer or partner network, to receive confidential feedback on our services?
Would you like to know more about our company: our working methods, tools and knowledge base, our ability to meet your needs and projects?
All the terms of our discussions are regulated by our personal data protection and privacy policy.