Certified Open Source Software Compliance (FOSS) Manager

Course Overview

This 6-hour instructor-led course provides a practical and comprehensive introduction to Free and Open Source Software (FOSS) Compliance. It covers the fundamentals of FOSS, including key license types (permissive, copyleft), legal obligations, and license compatibility. Participants will learn how to build and manage a FOSS compliance program, including policy development, documentation, and the use of Software Composition Analysis (SCA) tools. The course also explores Software Bills of Materials (SBOMs) their generation, validation, and role in compliance and security. Additional topics include managing vulnerabilities, aligning with regulations and standards like ISO/IEC 5230 and Executive Order 14028, and addressing supply chain risks. The training concludes with an introduction to advanced areas such as FOSS in AI/ML, DevSecOps, and emerging compliance tools, equipping learners with the knowledge to support robust and secure open source practices.

 

Curriculum

  • 7 Sections
  • 27 Lessons
  • 6 Hours

 

  • 4
    • 1.1
      What is FOSS?
    • 1.1
      Need for FOSS
    • 1.1
      Risks associated with FOSS
    • 1.1
      Popular projects & brief history of FOSS
  • 3
    • 1.1
      Key License Categories (Permissive & Copyleft)
    • 1.1
      In-depth discussion on a few licenses
    • 1.1
      Important Obligations
  • 4
    • 1.1
      Mixing open source licenses
    • 1.1
      Linking, aggregation, and derivative works
    • 1.1
      Dual and Multi License
    • 1.1
      Source Available License
  • 4
    • 1.1
      Understanding Policy & Process
    • 1.1
      Documentation Requirements (Modification, Attribution, Notices, etc.)
    • 1.1
      Use of Software Composition Analysis (SCA) tools & Shift-left approach
    • 1.1
      Compliance Lifecycle
  • 4
    • 1.1
      What are SBOMs?
    • 1.1
      Types of SBOMs
    • 1.1
      Generating & Validating a SBOM
    • 1.1
      How SBOMs aid in compliance
  • 5
    • 1.1
      How Open Source Program Office helps
    • 1.1
      Security Vulnerabilities (CVEs, CVSS, KEV, EPSS, etc.)
    • 1.1
      Operational risk with Open source
    • 1.1
      Sync with other regulations & Standards
    • 1.1
      Vendor/Supply Chain Risk Management
  • 4
    • 1.1
      FOSS in AI/ML
    • 1.1
      DevSecOps
    • 1.1
      Emerging tools & Trends
    • 1.1
      ASPPM

Schedule:
Day 1: 13th September 2025, 11am to 2pm
Day 2: 14th September 2025, 11am to 2pm

00
days
00
hours
00
minutes
00
seconds

Details

Topic: Certified Open Source Software Compliance (FOSS) Manager
Hosted By: Prashant Singh Baghel
Start: Sat, Sep 13, 2025 11:00 AM
Category: Instructor Led Online, September 2025
Duration: 6 hours 0 minutes
Current Timezone: Asia/Kolkata

Note: Countdown time is shown based on your local timezone.