Global open source compliance manager

2 weeks ago


Bengaluru, India Leading GCC Full time

Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. Foss ID, SPDX, Cyclone DX). Support engineering and product teams in identifying, documenting, and resolving OSS license obligations and risks. Collaborate with legal, procurement, and security teams to ensure OSS compliance is embedded in development and sourcing workflows. Monitor regulatory developments and industry standards related to OSS compliance and ensure Volvo Cars remains aligned. Provide training, documentation, and hands-on support to teams across the company to build compliance awareness and capability. Contribute to external OSS compliance initiatives and working groups (e.g., Open Chain, SPDX), in coordination with the strategic OSS lead. Do you fit the profile? We’re looking for someone who can turn policy into practice — someone who understands the complexity of OSS compliance and knows how to make it scalable, understandable, and embedded in everyday workflows. You might be the right fit if you: Have experience in OSS compliance, license management, or software governance within a global organization. Understand OSS licenses (e.g., GPL, MIT, Apache), license compatibility, and legal obligations — and can translate that into practical guidance. Are familiar with OSS compliance tools and SBOM generation platforms, and know how to integrate them into development pipelines. Know the standards and frameworks that matter (e.g., Open Chain, SPDX, ISO/IEC 5230), and how to apply them effectively. Communicate clearly and confidently with technical and non-technical stakeholders, building trust and understanding. Are detail-oriented, proactive, and passionate about building scalable, transparent, and ethical compliance processes. Enjoy working across disciplines and geographies to support a global software organization.



  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. Foss ID, SPDX, Cyclone DX). Support engineering and product teams in identifying, documenting, and resolving...


  • Bengaluru, Karnataka, India Hewlett Packard Enterprise | HPE Full time ₹ 60,000 - ₹ 1,80,000 per year

    Open Source Compliance - Legal Region CounselThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We Are:Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and...


  • Bengaluru, Karnataka, India Hewlett Packard Enterprise Full time ₹ 60,000 - ₹ 1,80,000 per year

    This role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We AreHewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to...


  • Bengaluru, India Global Technologies Full time

    Description : - 5+ years of experience in FOSS auditing and compliance.- Proficiency with one or more SCA tools (e.g., Black Duck, WhiteSource, FOSSA, Snyk, FOSSID).- Strong understanding of open source licenses (GPL, MIT, Apache, BSD, etc.).- Experience working with SBOMs and license documentation.- Understanding of Open Source Software principles and...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: - Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. - Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX). - Support engineering and product teams in identifying, documenting, and...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include: Operationalize and maintain OSS compliance framework, including policies, directives, and procedures. Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX). Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:- Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.- Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).- Support engineering and product teams in identifying, documenting, and resolving...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...


  • Bengaluru, India Leading GCC Full time

    Key responsibilities include:Operationalize and maintain OSS compliance framework, including policies, directives, and procedures.Manage and improve tooling for OSS scanning, license analysis, and Software Bill of Materials (SBOM) generation (e.g. FossID, SPDX, CycloneDX).Support engineering and product teams in identifying, documenting, and resolving OSS...