Source description
About the role
Requirements
-
Experience with Black Duck technology, which is used to scan applications and container images, identify all open source components, and detect any open source security vulnerabilities, compliance issues, or code-quality risks.
-
Fundamentals around SBOM "Software Billing of Materials". Familiar with a nested inventory, a list of ingredients that make up software components.
-
An SBOM is a complete inventory of a codebase including the open source components, the license and version information for those open source components, and whether there are any known vulnerabilities in those components.
-
Experience creating policies around security risks, preventing security vulnerabilities at the application level.
-
Experience with Software Composition Analysis, which includes analyzing custom-built software applications to detect embedded open-source software and detect if they are up-to-date, contain security flaws, or have licensing
-
Possess the proven ability to protect software application code and data against cyber threats.
-
Open-Source Securities
More at 3B Staffing