Security & Privacy

How we protect your data

Privacy by Design

Optimal Workforce is an operational optimization tool—not a system of record for personal information. We designed the platform to work without processing protected health information (PHI) or sensitive personal data.

What we process

  • Client identifiers and service addresses
  • Clinician identifiers, locations, and capacity limits
  • Geographic boundaries and regions
  • Assignment and workload data

What we explicitly do NOT process

  • Protected health information (PHI)
  • Medical records or diagnoses
  • Government IDs (SSN, SIN)
  • Financial account details

Data Security

Encryption

All data is encrypted in transit using TLS 1.2+ and at rest using AES-256 encryption.

Access Controls

Role-based access controls and multi-factor authentication protect your account.

Security Assessments

Regular security assessments and monitoring help us identify and address potential vulnerabilities.

Employee Training

All employees receive data protection training and follow security best practices.

Compliance

PIPEDA Compliant

We comply with Canadian privacy law (PIPEDA) requirements.

Canadian Data Processing

Data is processed and stored in Canada.

Data Retention Policies

Clear retention policies ensure data is kept only as long as needed.

Right to Deletion

Request deletion of your data at any time.

Questions about our security practices?

Contact us at privacy@optimal-workforce.com

Contact Us