HealthKit & Medical iOS App Consulting
Five years at LivaNova on Epsy, an epilepsy management app built inside an FDA-regulated medical-device company. HealthKit, HIPAA, clinical-grade data pipelines, and the operational discipline that keeps a healthcare app shipping.
- FDA-regulated iOS apps with design controls and change management
- HealthKit integration: sample types, observer queries, clinical records
- HIPAA and OWASP MASVS posture for apps handling clinical data
Related work
What clients say
"Vadim was instrumental to the success Epsy enjoyed on iOS, taking it from an idea on a Miro board to the highest rated and most downloaded app of its kind on the store."
James C. · Mobile Engineering Lead, Epsy
"We had a strict deadline, and Vadim managed to complete the job in time. He gave us meaningful feedback and suggested better approaches, not trying to blindly stick to our specification."
Founder · Pre-seed streaming service
"I can say with confidence that it will be difficult to find a better developer. Vadim is achievement-oriented, highly organized, with very good communication skills."
Alex Z. · Co-Founder, eda.so
Common engagements
Architecture review before submission
3–5 days. I audit the data model, the HealthKit observer queries running in the background, the Keychain and File Protection posture the auditor will check, and the watchOS sync path if there is one. You get a ranked list of what will come back from a reviewer and what to change before it does.
HealthKit integration from scratch
I design the authorization flow, build the sync model, select the right sample types, and handle re-consent when the user's data scope changes. 2–4 weeks end-to-end.
Diagnose reported data gaps
Usually an observer-query reliability issue or a HealthKit background-delivery regression after an iOS update. I reproduce it against real HealthKit data, patch it, and write the regression test that catches it next time.
Areas I cover
Pricing
Architecture reviews, hiring help, second opinions on that thing that's been bugging you.
Available nowFeatures, MVPs, migrations, firefighting. Minimum 5 days.
Available nowPriority support: review agency code, join architecture calls, catch problems before they ship.
Questions
Do you handle the regulatory submission itself?
No. That belongs to your regulatory team or a specialist consultancy. My role is the engineering discipline: making sure the submitted software behaves the way the documentation claims and that the code survives review.
Can you work with our QMS?
Yes. I've worked within ISO 13485 and IEC 62304 quality management systems. The commit discipline, traceability, and review process overlays cleanly on the way I prefer to work anyway.
Apple Health vs a bespoke data store?
Depends on whether the data needs to be shared with other apps, whether a medical professional needs to review it, and what happens when the user switches phones. Half-day advisory often settles this in one sitting.
How do I get a quote?
Two paths. If you need speed, send me a detailed brief and I'll quote from it (usually within 48 hours). If you'd rather talk first, book a free 30-minute scoping call and I'll quote after. Most clients who pick the brief path land on the call anyway once we get into the specifics, but the door is open either way.
How quickly can you start?
Advisory calls can happen within days. For project work, I typically need 1-2 weeks notice to clear the calendar, though I keep some buffer for urgent firefighting. Check the availability badges above for current openings.
Do you work with early-stage startups?
Yes, from pre-seed to Series C and beyond. For very early teams, the advisory tier often makes more sense than project work: you get architecture guidance without committing to a large engagement before you've validated the product.
What's included in the day rate?
Everything: code, architecture decisions, code review, documentation, async Slack availability during working hours. No surprise add-ons. I bill for time spent working on your project, not for "thinking about it in the shower."
How do you handle timezone differences?
Currently in Vancouver (PST) with full overlap for North American teams. For UK and Europe, I'm online by their afternoon. For Gulf or APAC, we'd agree on overlap hours and handle the rest async. I've worked with teams from San Francisco to Dubai.
Where I've worked CV · LinkedIn
Shipping a medical or health iOS app?
Describe what you're working on, or book a free 30-min scoping call. I reply within 48 hours.
work@drobinin.com Book a free call →