Life Science Data
Manager

Enabling our customers to comply with regulatory frameworks

Genestack develops its ODM platform based on a structured and controlled set of requirements that are mapped and aligned to key regulatory and security frameworks, including:

These requirements form a core input into the design, development, and operation of the Genestack ODM platform, ensuring that security, data integrity, and regulatory compliance are embedded by design. This approach enables customers to operate the platform in alignment with applicable regulatory expectations.

Genestack ODM is GDPR, HIPAA and ICH GCP E6-ready.

ISO 27001 Certified ISO 27017 Certified ISO 27018 Certified FDA 21 CFR Part 11

Genestack's ISO-Certified Security Framework

Genestack's ISO 27001-certified Information Security Management System (ISMS) ensures the ODM platform is designed and operated in line with "secure by design" principles, supporting compliance with GCP and regulatory requirements.

Core security capabilities include:

  • Encryption of data at rest and in transit
  • Integration with client identity and access management systems
  • Role-based access controls and least-privilege enforcement
  • Data integrity checks and validation controls
  • Comprehensive, time-stamped audit trails

Where ODM is delivered as a SaaS solution, the ISMS governs all operational processes to ensure the ongoing security, availability, and integrity of the service, supported by continuous internal audit and regular control validation.

Genestack is certified to:

  • ISO/IEC 27001 – the international standard for establishing, operating, and continually improving an Information Security Management System
  • ISO/IEC 27017 – cloud-specific security controls, clarifying shared responsibilities between provider and customer
  • ISO/IEC 27018 – protection of personally identifiable information (PII) in public cloud environments

All ISO/IEC certifications are independently audited annually by Amtivo, a UKAS-accredited certification body, providing ongoing assurance that security and privacy controls remain effective against evolving threats.

Read more...
Close

Environmental, Social and Governance

Genestack builds data infrastructure for the life sciences, and the same standards of rigour and evidence guide how we run the company. Sustainability is part of that, and it aligns us with the priorities of the pharma and biotech organisations we serve.

Science-based emissions target (SBTi)

Genestack has set a near-term greenhouse gas emissions reduction target that has been independently validated by the Science Based Targets initiative (SBTi). Genestack commits to maintain zero scope 1 and scope 2 emissions through 2035, and to measure and reduce its scope 3 emissions from a 2024 base year.

The SBTi is the global body that defines and promotes best practice in science-based emissions reduction, in partnership with CDP, the United Nations Global Compact, the World Resources Institute and WWF. Targets are assessed against the latest climate science before they are validated. Our validated target is listed on the SBTi Target Dashboard.

How does Genestack help you meet your regulatory requirements?

Below are the key requirements under the FDA's 21 CFR part 11, how Genestack ODM complies with these, and how Genestack can help you fulfil your regulatory obligations towards these.

NEWS AND BLOG

More highlights