About the practice
An independent regulatory practice
McCulloch Regulatory Compliance is a focused, independent advisory. We work primarily with life sciences organisations in biotech, pharma, medical devices, and IVD, and bring the same rigour to data protection, privacy, and AI regulation across any sector where those obligations arise.
We work across the EU, UK, US, and other major markets, combining technical knowledge with hands-on regulatory experience. Clients come to us at every stage, from shaping a development programme to preparing for an inspection, responding to a safety issue, or meeting data protection obligations. The advice we give is specific to your situation, not templated.
The practice is intentionally lean. You work directly with experienced advisers who know the science and the regulatory framework around it, not through layers of account management.
Our approach
How we work
Strategy that anticipates
We define the regulatory pathway from the outset, so that development, manufacturing, and market-access decisions are made with the full requirements already in view.
Practical, not theoretical
We advise on how regulations work in practice, how authorities interpret them, how inspectors apply them, and what your teams actually need to do.
Across the lifecycle
Regulatory obligations change as a product matures. We work across the full lifecycle and stay involved as those obligations evolve.
Quality at the core
Quality and GxP principles inform all of our work, including the increasingly complex compliance landscape around AI and emerging technologies.
Privacy by design
We incorporate data protection requirements from the start of any project, not as an afterthought, treating GDPR obligations as part of the regulatory framework rather than separate from it.
Sectors
Who we work with
- Biotechnology
- Pharmaceuticals
- Medical devices
- In vitro diagnostics (IVD)
- Combination products
- Digital health & AI
- Food & cosmetics
Affiliations
Professional standing
Our advisers hold relevant professional qualifications, including ISO 13485 Lead Auditor and CIPP/E (IAPP) certification in European data protection. Full credentials and affiliations are listed on each person’s profile.
Meet the team →