---
title: "Privacy, Data Protection, and Compliance | Florence"
url: https://stacklist.com/card/fb4987a9-2346-496f-b833-eb6076804cfc
source_url: "https://www.florencehc.com/compliance/"
stack: https://stacklist.com/stack/9abd6cca-e98c-4b42-be2a-905514c66396
summary: "Florence Healthcare provides comprehensive compliance, privacy, and security services for clinical research operations across 90+ countries and 37,000 sites. The company maintains rigorous standards including GDPR compliance, 21 CFR Part 11, Annex 11, and ICH GCP requirements to protect research workflows and personal data."
tags: "compliance, data-privacy, clinical-research, gdpr, regulatory, global-operations, security"
key_entities: "Florence Healthcare (organization), Florence Compliance Team (organization), GDPR (concept), 21 CFR Part 11 (concept), ICH GCP (concept), EU-U.S. Data Privacy Framework (concept), eISF/eTMF (concept), eConsent (concept), European Economic Area (location), China (location), United States (location)"
classification: "reference"
content_hash: "sha256:e0faf4486d7b80213ef7754ff479866ee8685276618b93f449d645a45b89a969"
acp_version: "0.2"
token_counts_approximate: 1451
visibility: public
agent_accessible: true
status: "final"
---

# Privacy, Data Protection, and Compliance | Florence

Florence Compliance, Privacy and Data Protection Florence Team 2025-06-26T11:13:50-04:00 Florence Compliance, Security, and Data Protection You’re trusting us with a core component of your operations, and Florence takes this seriously. We’re committed to your success in advancing research together: in a compliant, safe, and secure way. Florence has implemented rigorous privacy and security measures to ensure adherence to the highest standards of compliance. Access comprehensive guides, checklists, and country-specific resources on our global compliance commitment—all in one place. See how Florence protects your clinical research workflows Global Insights &amp; Resources 37k Sites 90+ Countries 7.2M Monthly workflows Argentina Australia Brazil Canada China European Economic Area India Japan South Africa South Korea United Kingdom United States Don’t see what you are looking for? Reach out to your Florence contact or click&nbsp; here &nbsp;to schedule a demo. Global Compliance Software Compliance Data Privacy Security Global Compliance GLOBAL REGULATIONS Manage Global Studies, Compliantly At Florence, our Global Compliance Team assesses country-specific clinical regulations to ascertain our service capabilities for sites and sponsors worldwide. We support clinical trial operations in over 90 countries, facilitating compliant workflows for eISF/eTMF, eConsent, electronic signatures, remote monitoring, source data verification, and more. With your typical use cases of Florence products in mind, the Compliance Team evaluates regulations to aid in simplifying global expansion. RESOURCES Compliance FAQs Compliance in GlobalResearch Using an eISF and eTMF in China Using eConsent in Europe Using eConsent in the United States ICH E6 R3 impact on Site Enablement Software Compliance SOFTWARE COMPLIANCE Florence Supports your Compliance Florence has done the regulatory heavy lifting as it relates to understanding and interpreting the technical and procedural requirements so that you can have time back in your day to focus on research.&nbsp;The Florence Compliance team works closely with our Software Development teams to ensure we uphold our compliance commitment with each release.&nbsp; Florence is compliant with the technical requirements of 21 CFR Part 11, Annex 11, ICH GCP and more. Compliance is a shared responsibility between Florence and our customers. Florence maintains a Shared Responsibility Model to ensure the technical and procedural requirements of applicable global regulations are understood.&nbsp; RESOURCES Global Compliance: Shared Responsibility Part-11 Compliance ICH GCP E6(R2) Compliance Tips for Launching eSignatures ALOCA-C in Clinical Trials Remote Monitoring Impact on Compliance Data Privacy DATA PRIVACY Keeping your Data Safe At Florence, our Global Compliance team is on top of the evolving privacy landscape. Florence has not only taken the necessary steps to self-certify compliance with General Data Protection Regulation (GDPR), it is written into our company’s culture and the basis for our data privacy procedures. Florence is approved under EU-U.S. Data Privacy Framework (DPF), along with the UK Extension to the EU-U.S. DPF, and the Swiss-U.S DPF; demonstrating our commitment to adequate data protection. Personal data privacy is of the utmost importance to us. You have the right to know how your information is collected and used. The Florence Privacy Policy was designed to protect your research study data, including any and all individuals whose personal data is handled by Florence; this includes the personal data of our software users, account holders, research team members, and research participants. The Privacy Policy describes our policies and practices regarding the collection, use, disclosure, and processing of your personal information. It also describes your rights and choices regarding your personal information. RESOURCES Library of GDPR Guidance GDPR Guidance Tips for Managing Data Privacy Security SECURITY Securing your Workflows Protecting customer data is of the utmost importance to Florence and is built into every aspect of our service. We align our security practices with industry guidance including NIST, and we have a robust library of security policies and procedures in place to formalize and govern our security practices. Florence also has a third-party SOC 2 attestation performed annually not only to ensure we are meeting industry standards and best practices but to demonstrate our commitment to security and give our customers peace of mind regarding the security of their valuable data. Our SOC 2 Type 2 Report is available for customers to review upon request. RESOURCES Security FAQs Security Controls HIPAA Guidance &#8220;Florence cultivates collaborative Compliance. At Florence we believe in shared responsibility because we recognize we all play a significant role in protecting customers&#8217; and study participants’ data and privacy. Florence does extensive research into global regulations affecting clinical trial documentation, monitoring, data transfer and storage. Armed with that information, we can provide solid guidance to our customers so that they can best leverage the Florence resources towards critical clinical trials in their global venues.&#8221; Nancy DiGioacchino VP, Quality Management &amp; Global Compliance Questions about Compliance, Security, or Data Protection? Contact us at privacy@florencehc.com Still have unanswered questions? We are committed to building trust, ensuring compliance, and enhancing operational efficiency. To access confidential information not featured on this page, such as our detailed SOC 2 Type II reports, a signed NDA is required. Please read and sign Florence&#8217;s NDA to gain access to our compliance portal. View NDA
