Enable job alerts via email!

OPEN SOURCE LICENSING EXPERT- AEROSPACE AND DEFENSE:

Gentrian

London

On-site

GBP 50,000 - 90,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player in fintech is seeking a specialist in open source compliance to revolutionize the aerospace and defense sector. This exciting role involves inventorying applications, assessing legal risks, and developing comprehensive policies for software and services. You will work closely with engineering and legal teams to ensure compliance and streamline processes using advanced scanning tools. If you have a passion for innovation and a strong background in open source licensing and programming, this is a fantastic opportunity to make a significant impact in a rapidly evolving industry.

Qualifications

  • 5+ years experience with open source compliance and risk assessment.
  • Hands-on experience with multiple programming languages and scanning tools.

Responsibilities

  • Manage scanning tools and integrate them across the organization.
  • Create and implement open source policies for software products.

Skills

Open Source licenses
C++
Python
JavaScript
Java
Automated build tools
Version control systems
Artifact repositories

Education

Master's degree in Computer Science/Engineering

Tools

Jenkins
Git
Perforce
Docker
Maven
Gradle

Job description

Bullisher is a data-centric fintech solution provider in the aerospace and defense industry for institutional level investors, looking to disrupt and revolutionize a $3 trillion dollar industry. We spearhead an industry-leading Blackbox to facilitate and administer trade agreements pioneered by a vehicle driven by our new generation benchmark delivering solutions through innovation with uncompromising agility. Predicts trends in the aerospace and government defense entities, predicts trends in political shifts, and the ability to influence actual effect changes in government policies through innovation.

Job Description: This role may suit an individual who is a specialist in comprehensive open source compliance. Inventorying current applications, including programming languages and distribution methods. Determining which products/software and services pose the highest risk of legal liability - this will differ depending on the syndicate members, but, broadly: Focus on mobile and on-prem applications, for on-prem, prioritize products. Pay particular attention to images and virtual machines. Create open source policies for these products/software and services and implement those policies in our scanning tool.

WHAT ARE WE LOOKING FOR?
  • 5+ years extensive experience in permissive licenses, public domain dedication, corporate-style permissive licenses.
  • High level experience in sampling policy for distributed commercial licensed products.
  • Hands-on setting up policies on very sophisticated software/products scanning tools physically distributed.
  • The ability to encode these policies into a tool. The tool will flag up things that violate a particular policy.
DUTIES, RESPONSIBILITIES AND MANAGEMENT RELATIONSHIPS:
  • Name one person responsible for managing the scanning tools and integrating it across the Bullisher organization (do not decentralize this function).
  • Commit to a regular schedule of looking at scanning reports and publishing open source attributions reports (embedding in development processes).
  • Integrate our scanning tool with a ticketing tool like JIRA.
  • Configure our scanning tool to auto-approve.
  • It’s very important for you to find an engineering partner within the organization structure who’s going to help legal action to run the compliance process, who has a big bird eye view over the company e.g. CTO.
  • It’s important to publish attribution reports and have source codes ready for every release we do.
  • The scanning tools should have strong policy enforcement automation and function as knowledge management.
  • Use our general counsel/compliance to look at the result of a policy system flag up that isn’t auto-approved.
  • E.g. AGPL.
  • Source code of the relevant product to confirm the correct licenses have been identified.
  • Approved/deny decisions should take into account risk tolerance that underlies the open source policies.
  • Implement policies for security and engineers to separately review tickets; this should be built into the ticketing workflow.
  • Create packaging attribution files.
  • Prepare a source code for engineers should they create a tarball (including modifications) for all open source used in the product/software.
  • Manage the continuous cycle of the open source process of the sophisticated application/platform.
  • Maintain compliance continuity to require OSS scanning tool integration for new repos and new products/software within the company (this can be technical or procedural in nature).
  • Anytime we are creating a product/repos you have to go through the process of integrating it with our open source scanning tools.
KEY REQUIREMENTS:
  • Hands-on with Open Source licenses e.g. (BDS, Apache 2.0, MIT, XLL, OpenSSL, SSLeay, LGPL, GPL, W3C, BOOST, Mozilla Public License, Eclipse Public License, Common Development and Distribution License, Common Public License, Netscape Public License, IBM Public License, Microsoft Limited Public Licenses, etc.)
  • Technical abilities with multiple programming languages such as C++, Python, JavaScript, or Java.
  • Executive level experience with automated build tools, version control systems, and artifact repositories such as Jenkins, Git, Perforce, Docker, Maven, and Gradle.
  • Master's degree in Computer Science/Engineering or equivalent.
INTERVIEW PROCESS:
  • STAGE 1: COGNITIVE ABILITY TEST
  • STAGE 2: COGNITIVE ASSESSMENT SCREENING: WITH A 30 YRS+ EXPERIENCE PSYCHOLOGIST
  • STAGE 3: PRE-SCREENING (VERIFICATION CHECKS & SECURITY CLEARANCE)
  • STAGE 4: INTERVIEW WITH THE: CEO, CTO & GC
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.