I have been part of the Black Duck team for more than 14 years, helping organizations navigate the complexities of open source software compliance and security. Over the course of my career, I have participated in more than 300 mergers and acquisitions (M&A) engagements, providing due diligence insights on open source usage, licensing obligations, security risks, and software supply chain governance. My experience spans a wide range of industries, from fast-growing startups to some of the world's largest enterprises.
As generative AI transforms the way software is developed, my focus has expanded to helping organizations adapt their open source compliance and due diligence practices to this rapidly evolving landscape. I am particularly interested in the intersection of AI-assisted development, software supply chain risk, and regulatory compliance. Through my work, I help companies establish practical processes and governance frameworks that enable innovation while maintaining visibility into licensing, security, and intellectual property risks. My goal is to help organizations confidently embrace AI-driven development while preserving the rigor and discipline required for effective open source risk management.