Preferred Skills Open Source Program Office (OSPO) experience, open source policy development, software composition analysis (SCA) tools, ServiceNow, vulnerability management, container registries, DevSecOps, secure software development frameworks, exception management processes, technology evaluations and vendor assessments, proof-of-concept facilitation, third-party risk management, regulatory and compliance environments. Software supply chain security, application security, open source software governance, SBOM concepts and generation, enterprise governance and operating model design, SDLC and software engineering practices, GitHub, Jenkins, Artifactory, cloud environments, stakeholder management, requirements gathering, executive communications, roadmap development, budgeting and staffing planning, cross-functional leadership and influence.