David Rice has more than 25 years of experience representing clients on data privacy and security issues, data breaches, technology transactions, and cloud services and infrastructure. He advises clients on privacy compliance, handles incident response, conducts employee cybersecurity training, and formulates responses to data subject requests.
David has negotiated hundreds of complex information technology contracts, including agreements involving cloud services, data and marketing, data centers, networking, the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), databases, colocation, SaaS, IoT, content delivery networks, dark fiber, IP transit, communications services and equipment, wireless networks, equipment leases, device trials, the Health Insurance Portability and Accountability Act (HIPAA), the Family Educational Rights and Privacy Act (FERPA) and spectrum leases.
David’s clients include Fortune 100 and international companies in highly-regulated sectors, including internet & telecommunications, software & cloud services, social media, gaming, as well as government and educational institutions. David is known for his national and international experience, helping to close transactions for services in the United States and 35 other countries in North America, South America, Africa, Europe, and Asia.
A leader in the field, David regularly speaks at conferences, trade organizations, and in-house for companies on emerging issues related to data security and privacy.
Privacy, Data Security, and Incident Response Plus
Handled GDPR vendor data processing agreement implementation for a Fortune 1000 company, for one of the largest video game companies, among other large entities.
Assisted numerous clients with international, federal, and state regulatory compliance involving data, marketing and sales strategies, privacy policies, and privacy impact assessments.
Advised numerous clients on data security incidents, including with issues related to forensic investigators, reporting obligations, and notifications to consumers, regulators, and data protection authorities under the GDPR.
Prepared CCPA compliance plans with emphasis on third-party and vendor management.
Represented global internet company in implementing responses to Edward Snowden leaks regarding government monitoring of internet traffic.
Advised state port authority on its information security & incident response program, including compliance with homeland security requirements.
Assisted a global manufacturing and marketing company on a data breach that included social security numbers and other sensitive employee data.
Represented nonprofit in response to hacking of a human resources database that resulted in fraudulent tax returns, including preparing consumer notices and developing press strategy.
Represented a client in connection with a fraudulent wire transfer, including working with the U.S. Secret Service.
Assisted national franchise manage a data breach caused by an IT software vendor, including compliance with state law data breach reporting obligations.
Represented multiple nonprofit entities whose data was compromised by ransomware attack on a third-party vendor (a company known as having the largest international donor database).
Performed a data security audit for an educational institution, which uncovered data processing irregularities, and advised the institution on best practices and compliance.
Trained legal and IT staff at major utilities and a government transportation entity regarding data security.
Advised a regional bank on compliance with Federal Financial Institutions Examination Council’s (FFIEC) data security standards and on preparation for regulatory audits.
Technology Transactions, Cloud Computing, Networking, Data Centers, and Database Transactions Plus
Advised one of the largest global internet companies on domestic and international internet backbone issues, data centers, content delivery networks, almost all of which had data security implications. Advised in-house legal, engineers, and other corporate channels.
Negotiated hundreds of complex vendor contracts involving technology issues, including agreements involving cloud and SaaS, data centers, networking, content streaming, colocation, dark fiber, IP transit, communications services and equipment, wireless networks, equipment leases, device trials, spectrum leases, cell tower leases, among others.
Negotiated the sale of a major data center for a Fortune 500 company.
Managed a team of ten attorneys and a paralegal in handling technology transactions.
Advised online clients regarding social networking issues, content moderation on social media sites, retail sales, terms and conditions, privacy policies, and mobile marketing.
Intellectual Property Plus
Negotiated a wide range of intellectual property related contracts, including software development agreements, end user licensing agreements, and trademark licensing agreements.
Assisted clients with Digital Millennium Copyright Act issues, including takedown notices and interaction with internet service providers and law enforcement.
- CIPP-US certified by the International Association of Privacy Professionals
- Federal Communications Bar Association, member
- Pacific Northwest Chapter, cochair
- International Association of Privacy Professionals, member
- KnowledgeNet chapter, cochair, 2018-2019
- Washington State Bar Association, member
- Selected for inclusion as a Washington Super Lawyer—Rising Star, 2007-2008
Outside the Office
David enjoys playing and collecting guitars and is a Seattle Sounders FC season ticket holder.