Open Source Engineering, Technology, and Security
Senior Vice President, Head of Open Source. Established and led the Open Source Program Office, driving compliance, security, and technology modernization initiatives.
- Develop and implement policies, procedures, and controls to ensure open source license compliance for 80 mobile apps, SDKs, software embedded in hardware, and software publications; addressing legal and security risks.
- Direct the Software Bill of Materials (SBOM) program for IT Asset Management and Third Party Risk Management, enhancing transparency and accountability in software development processes. Create, analyze, and inventory thousands of SBOMS for internally developed applications in compliance with regulatory frameworks including PCI, FFIEC, NIST-800,
- Lead a cross-functional team to develop tools and processes to efficiently remediate application vulnerabilities at scale, reducing security risks and improving overall software quality. Run a CVE triage and Asset-based prioritization processes to address open source security and obsolescence risks.
- Operate the formalized InnerSource program, enabling teams to collaborate on shared software dependencies and fostering a culture of knowledge sharing and innovation. Supporting InnerSource activities in eight product lines that have intersecting technology platforms.
- Provide internal consulting services to Legal, Risk, Product, Security, and Innovation teams, offering expertise and guidance on open source concerns and best practices. Participate in the bank's Intellectual Property Executive Strategy Council.
- Maintain clear and effective communication with stakeholders, ensuring a shared understanding of open source policies and procedures.
- Consistently stay updated with industry trends and best practices in open source engineering, technology, and security, driving continuous improvement and innovation within the organization.