Qualcomm

FOSS Compliance Engineer

Hyderabad, Telangana
Python C++ Java Go Linux SPDX CycloneDX
Description

FOSS Compliance Engineer

Location: Hyderabad, Telangana, India

Department: Software Engineering

Work Location: onsite


Company:

Qualcomm India Private Limited

Job Area:

Engineering Group, Engineering Group > Software Engineering

General Summary:

Qualcomm Open Source Engineering team is looking for a FOSS Compliance Engineer in Hyderabad to ensure our products and services meet opensource licensing obligations and industry best practices. This role requires strong hands-on experience in FOSS compliance operations. 

 

The primary responsibilities include ensuring license compliance, enhancing software license reporting, and maintaining a software bill of materials (SBOM) and FOSS reports for all product lines. Additionally, the role involves automating compliance processes, educating the development community, and collaborating with various teams to ensure adherence to licensing obligations. 

 

What You’ll Do 

  • Perform FOSS compliance analysis for software products and services across the business units or product lines (source and binaries).  

  • Identify and analyze OSS licenses and assess impact on commercial distribution.  

  • Maintain accurate inventories of components, licenses, obligations, and attributions; ensure traceability across source code, third-party binaries, images, and containers.  

  • Operate and integrate SCA tooling (FossID preferred) and embed scans into development workflows 

  • Automate compliance workflows (Python) for scanning, SBOM generation/validation, approvals, reporting, and release readiness checks.  

  • Apply SBOM standards and best practices (SPDX, CycloneDX) across the product lifecycle; publish, validate, and version SBOMs for releases.  

  • Conduct OSS risk assessments (licensing, security, provenance) and recommend practical remediation strategies (substitution, configuration, exception management).  

  • Guide development teams on OSS intake, dependency linking, proper attribution, notice files, and license-compliant usage patterns.  

  • Stay current on licensing trends, regulatory developments, and community practices; contribute to continuous improvement of policies and processes.  

  • Support reviews, audits, and governance activities, including prerelease compliance gates, customer/partner disclosures, and internal/external audits. 

 

Required Skills & Experience 

  • Experience with FOSS compliance analysis, reporting and publishing. 

  • Handson experience using Software Composition Analysis (SCA) tools such as FossID, Blackduck or equivalent. 

  • Familiarity with SBOM standards (SPDX, CycloneDX) and validation best practices. 

  • Familiarity or experience with OpenChain standard and implementation. 

  • Ability to read programming languages such as C/C++, Java, Python, Go. 

  • Ability to automate license compliance reporting and integrate it into CI/CD processes. 

  • Strong attention to detail and high-quality output. 

  • Ability to work independently, drive improvements, meet schedules, and exhibit strong writing skills. 

  • Experience with Linux OS is preferred. 

 

Education Requirements 

  • Required: Bachelor's, Computer Engineering or equivalent 

  • Preferred: Master's, Computer Engineering or equivalent 

Minimum Qualifications:

• Bachelor's degree in Engineering, Information Systems, Computer Science, or related field.

Applicants: Qualcomm is an equal opportunity employer. If you are an individual with a disability and need an accommodation during the application/hiring process, rest assured that Qualcomm is committed to providing an accessible process. You may e-mail [email protected] or call Qualcomm's toll-free number found here. Upon request, Qualcomm will provide reasonable accommodations to support individuals with disabilities to be able participate in the hiring process. Qualcomm is also committed to making our workplace accessible for individuals with disabilities. (Keep in mind that this email address is used to provide reasonable accommodations for individuals with disabilities. We will not respond here to requests for updates on applications or resume inquiries).

Qualcomm expects its employees to abide by all applicable policies and procedures, including but not limited to security and other requirements regarding protection of Company confidential information and other confidential and/or proprietary information, to the extent those requirements are permissible under applicable law.

To all Staffing and Recruiting Agencies: Our Careers Site is only for individuals seeking a job at Qualcomm. Staffing and recruiting agencies and individuals being represented by an agency are not authorized to use this site or to submit profiles, applications or resumes, and any such submissions will be considered unsolicited. Qualcomm does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to our jobs alias, Qualcomm employees or any other company location. Qualcomm is not responsible for any fees related to unsolicited resumes/applications.

If you would like more information about this role, please contact Qualcomm Careers.

Qualcomm
Qualcomm

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say