Overview
John (He/Him) knows that good data practices mean a competitive advantage. He also knows how difficult it can be for businesses to understand and manage the complex laws that govern how they use and protect their data.
John brings to the firm over two decades of legal experience in the public and private sectors. Notably, he held a variety of positions with the federal government, where his work largely focused on high-profile privacy, cybersecurity, and technology issues.
During his time working for the U.S. Congress, he managed many high-profile hearings and investigations and served as a senior legal advisor to committee chairs in the House and the Senate. In these roles, he supervised the drafting of dozens of bills related to information technology, cybersecurity, privacy, telecommunications, and consumer protection, many of which were eventually adopted into law.
As chief privacy official of the Federal Communications Commission, John supervised the agency’s compliance with all applicable information security and privacy laws. He prepared the agency’s annual privacy impact assessment and worked closely with the agency’s chief information officer and other senior leaders to make sure that good data practices were part of the agency’s decision making.
John eventually moved to a product and privacy counsel job at a financial technology startup, where he worked with teams across the company to make informed decisions about how to use and secure personal information in its products. He was responsible for the company’s public-facing disclosures and helped the company navigate the sometimes-tricky cybersecurity and privacy issues that arise during audits and contract negotiations.
At Amundsen Davis, the depth and breadth of John’s experience in cybersecurity and data privacy allows him to advise companies of all sizes on sound data privacy practices. In doing so, he knows he is helping his clients distinguish themselves by building trust with their employees, business partners, and consumers.
Membership & Involvement
Member: International Association of Privacy Professionals (IAPP); Federal Communications Bar Association (FCBA)
Resources & Insights
Alerts
Speaking Engagements
Published Works
Blog Posts
Education on Demand
Join partners Molly Arranz and John Williams for a practical Corporate Risk Management Series session on how to identify and manage AI-related risks across your organization and third-party relationships.
As businesses increasingly rely on third-party vendors and new technologies like AI, data privacy and cybersecurity risks continue to evolve. Poor data hygiene, careless AI use, and weak vendor oversight can open the door to regulatory scrutiny, reputational damage, and costly data breaches. By understanding areas of vulnerability, companies can minimize their exposure.
As businesses increasingly rely on third-party vendors and new technologies like AI, data privacy and cybersecurity risks continue to evolve. Poor data hygiene, careless AI use, and weak vendor oversight can open the door to regulatory scrutiny, reputational damage, and costly data breaches. By understanding areas of vulnerability, companies can minimize their exposure.
Join Amundsen Davis’s Cybersecurity & Data Privacy Service Group attorneys Molly Arranz, practice group chair, and John Williams, partner, for a timely Cybersecurity Awareness Month discussion on how to keep your organization safe.
Firm News
- Attorney John Williams Joins Amundsen Davis
Attorney John Williams Joins Amundsen DavisWe are happy to announce that John Williams has recently joined our Cybersecurity & Data Privacy Service Group as a partner.
- AI and Your Duties to Inform and Disclose: Building a Defensible Disclosure Strategy for Trucking Operations
AI and Your Duties to Inform and Disclose: Building a Defensible Disclosure Strategy for Trucking OperationsWe’re excited to highlight Lew Bricker, Molly Arranz, and John Williams as featured speakers at the upcoming ATA Litigation Center’s Trucking Legal Forum in their session, “AI and Your Duties to Inform and Disclose: Building a Defensible Disclosure Strategy for Trucking Operations.”
- Building a Privacy Program That Works Across Borders: How a Common Legal Framework Shaped Global Privacy Laws
Building a Privacy Program That Works Across Borders: How a Common Legal Framework Shaped Global Privacy LawsIn his article, “Building a Privacy Program That Works Across Borders,” published in USLAW Magazine's Summer 2026 edition, John Williams explains that modern privacy laws are built on the concept of “fair information practices.”
- Corporate Risk Management Series: Managing AI Risk - Shadow AI & Third-Party Exposure
Corporate Risk Management Series: Managing AI Risk - Shadow AI & Third-Party ExposureJoin partners Molly Arranz and John Williams for a practical Corporate Risk Management Series session on how to identify and manage AI-related risks across your organization and third-party relationships.
Services
Education
Georgetown University Law Center, J.D.
University of Chicago, PhD
Diploma in Archivistica Paleografia Latina e Diplomatica
University of Chicago, M.A.
University of Virginia, B.A.
Certified Privacy Professional
(CIPP/G, CIPP/US, CIPP/E)
Admissions
- Maryland
- Washington, D.C.
Languages
- Italian
- Spanish



