KIT | KIT-Bibliothek | Impressum | Datenschutz

Three Lessons Learned: How RSEs Succeed in License Management

Drees, Tim; Feuchter, Dirk 1; Stary, Tomas; Winandi, Achim ORCID iD icon 2,3
1 Innovations- und Relationsmanagement (IRM), Karlsruher Institut für Technologie (KIT)
2 House of Competence (HOC), Karlsruher Institut für Technologie (KIT)
3 KIT-Bibliothek (BIB), Karlsruher Institut für Technologie (KIT)

Abstract:

Abstract

Software license management is a critical but often overlooked aspect of Research Software Engineering (RSE). For both open-source and proprietary software projects, proper license management is increasingly important for sustainability, compliance, and collaboration. Our talk presents three key lessons learned from our experiences in license management, based on interdisciplinary projects and case studies at KIT. These lessons should help RSEs to overcome the challenges of license compliance in academic and industrial environments and to ensure long-term software value.

1. Generate Software Bill of Materials (SBOM) for Transparency

A key takeaway is the importance of creating and maintaining a Software Bill of Materials (SBOM) early on from the start in any RSE project. An SBOM provides a comprehensive inventory of all components and their associated licenses. It ensures transparency by clarifying which licenses apply to which parts of the code, and is especially valuable when collaborating with industry. In one case, a partner required software that had to be compliant with industry standards (e.g. ISO5230). The team had to do a lot of retrospective work to meet these requirements, highlighting the need for an SBOM from the beginning to avoid legal and financial complications later.
... mehr


Download
Originalveröffentlichung
DOI: 10.5281/zenodo.15582177
Zugehörige Institution(en) am KIT House of Competence (HOC)
Innovations- und Relationsmanagement (IRM)
KIT-Bibliothek (BIB)
Publikationstyp Vortrag
Publikationsdatum 25.02.2025
Sprache Englisch
Identifikator KITopen-ID: 1000183052
Veranstaltung 5th Conference for Research Software Engineering in Germany (deRSE 2025), Karlsruhe, Deutschland, 25.02.2025 – 01.03.2025
Externe Relationen Konferenz
Schlagwörter Software license management, RSE, Research software engineering, deRSE
Relationen in KITopen
KIT – Die Universität in der Helmholtz-Gemeinschaft
KITopen Landing Page