Open Source Compliance Engineer

1 week ago


Bengaluru, India Global Technologies Full time

Description : - 5+ years of experience in FOSS auditing and compliance.- Proficiency with one or more SCA tools (e.g., Black Duck, WhiteSource, FOSSA, Snyk, FOSSID).- Strong understanding of open source licenses (GPL, MIT, Apache, BSD, etc.).- Experience working with SBOMs and license documentation.- Understanding of Open Source Software principles and communities.- Excellent communication and documentation skills.- Ability to work independently and cross-functionally in a rapid-paced environment. IT Skills : MS office tools (Word, Excel, and PowerPoint).- Language Skills : Proficient in English language.Preferred Qualifications : - Experience with CI/CD pipelines and integrating SCA tools.- Familiarity with legal aspects of software distribution and IP.- Knowledge of Inner-Source, Open-Source and Contributions are plus....- Have experience in working on Blackduck protex, Fossid, Fossology and Jenkins- Having good knowledge in open source licenses.- Good understanding of complete Life-cycle of software audit process using various tools like Protex, FOSSID and Fossology.- Knowledge on Open Source compliance, governance & security vulnerabilities with the aid of tools like FOSSID.- Good understanding on FOSS - License Compliance, Conflicts and Compatibility.- Very Strong knowledge in Protex, FOSSID and Fossology.- Expert in report generation for FOSS audit using Protex.- Generation of standard audit reports for use by the management and legal teams for analysis.- Having good knowledge on Linux shell scriptingRoles & Responsibilities : Responsible for doing Open-Source code audit for multiple BUs using Fossology.- Extensive knowledge on open source licenses, its governance & compliance.- Knowledge on Open Source compliance, governance with the aid of tools like Protex.- Good knowledge on Open source licenses.- Worked on configuring GitLab, Clear case, BitBucket various SCMs integrating to Protex tool using CI/CD tool Jenkins.- Have good knowledge on SW360 for storing the created reports with respect to projects and following the approval process.- Analyze Open Source licenses, obligations, license compatibilities and create opinion reports.- Providing information to clients to understand which licenses govern the modification, use and distribution of the software in their code base.- Created OSS readme files and also trained OSS team for product releases.- Worked on many COTS Commercial of The Selfs reports for many commercial products and created reports.- Product clearing - released multiple product clearing reports for different projects and trained my team on the same.- Having good knowledge on multiple distributions of Linux and Linux command sets. (ref:hirist.tech)



  • Bengaluru, Karnataka, India Hewlett Packard Enterprise | HPE Full time ₹ 60,000 - ₹ 1,80,000 per year

    Open Source Compliance - Legal Region CounselThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We Are:Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and...


  • Bengaluru, Karnataka, India Hewlett Packard Enterprise Full time ₹ 60,000 - ₹ 1,80,000 per year

    This role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We AreHewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. Foss ID, SPDX, Cyclone DX). Support engineering and product teams in identifying, documenting, and resolving...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. Foss ID, SPDX, Cyclone DX). Support engineering and product teams in identifying, documenting, and resolving...


  • Bengaluru, India Acceldata Full time

    Bengaluru, Karnataka Work Type: Full Time **Position Overview**: - We are seeking an experienced - **Open Source Contributor** to join our team. - As an - **Open Source Contributor**, you will play a crucial role in - **our open source projects, **collaborating with the community and contributing to the development of cutting-edge software solutions. You...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX). Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: - Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. - Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX). - Support engineering and product teams in identifying, documenting, and...