Strategically managing and utilising Open Source Software

Open Source & Digital Sovereignty

Software-Entwicklerinnen am Bildschirm

Your expert for questions

Marcel Scholze
Director Open Source Software Management, PwC Germany
Tel: +49 69 9585-1746
Email

Sovereignty and innovation for your digital value creation

Digital sovereignty describes the ability to act autonomously and independently across the four dimensions of infrastructure, software, data and expertise. In a world of growing dependence on individual technology providers, this ability is becoming a strategic differentiator – for businesses as well as for public administration.

Open Source Software (OSS) is a key enabler in this regard: Open Source code enables transparency, verifiability and interoperability. From consumer electronics and medical technology through to automotive and enterprise IT: key technologies such as cloud computing, artificial intelligence, the Internet of Things and container orchestration rely heavily on Open Source. Effective Open Source Software management is therefore key to steering the strategic use of OSS and securing an organisation’s sovereignty in the long term.

“Our mission is to give organisations back the ability to shape their digital future on their own terms – with professional Open Source management as one essential pillar for genuine sovereignty.”

Marcel Scholze,Director Open Source Software Management, PwC Germany

Our services for Digital Sovereignty & OSS management

Assessment of your Digital Sovereignty from two perspectives and development of a bespoke strategy.

From OSS strategy to ongoing programme: processes, policies and roll-out support.

Identify critical dependencies and replace them with OSS alternatives.

Systematically managing security risks: through governance, policies and toolchains.

Selecting and implementing the right tools for your OSS management.

Professional and standards-compliant transparency regarding your software composition.

From the Readiness Check to the certificate: verifiable OSS compliance and security.

Check your suppliers’ OSS compliance: on a targeted basis or as an ongoing programme.

Identifying, assessing and making OSS risks transparent in transactions.

Using Open Source methods internally with governance and legal clarity.

Design, evaluate and strategically develop your Open Source Program Office.

Operate an OSPO professionally without having to build up your own capacity.

< Back

< Back
[+] Read More

Talk to our experts

Contact us

Our approach to Digital Sovereignty

Digital Sovereignty arises from the interplay of four dimensions: infrastructure, software, know-how and data. Only when all four areas are consciously managed can genuine capacity for action be achieved. OSS plays a central role in this as the foundation for transparency, interoperability and control over one’s own technology landscape.

Our approach combines diagnosis, strategy and implementation. First, we analyse your existing dependencies, from procurement right through to your IT landscape. Building on this, we develop a bespoke sovereignty strategy with specific areas for action. This results in a prioritised roadmap with a clear implementation timeline.

Open Source & Digital Sovereignty

Frequently asked questions

By using OSS, you reduce the vendor lock-in effect and strengthen your negotiating position vis-à-vis proprietary providers. At the same time, you improve IT security, quality and transparency through Open Source communities and professionalise the management of intellectual property in your software supply chain using existing standards such as ISO 5230, ISO 18974 and ISO 5962.

OSS enables you to benefit from shared knowledge and development capabilities, as well as from strategic, open development and innovation alliances. In addition, you strengthen your brand position and reputation to retain and attract digital talent.

OSS shortens your time-to-market through leading frameworks for key technologies such as AI, ML, blockchain and the cloud. At the same time, you eliminate one-off and recurring licence costs and establish Open Source development as a new procurement model for utilising swarm intelligence and global resource capacities.

Open source communities offer no contractual guarantees regarding project continuity, maintenance and quality. This makes it all the more important to identify critical dependencies, evaluate alternatives and, where necessary, have a substitution roadmap in place.

Non-compliant handling of OSS licences entails significant risks – ranging from a ban on the continued use of components (product recall) through to the enforced disclosure of one’s own intellectual property and claims for damages.

The risks lie less in Open Source itself than in how it is managed. Unclear origins of components, lack of compliance or vulnerabilities (e.g. CVEs) are one aspect. These become particularly critical due to non-transparent management practices among your suppliers.

“Digital sovereignty begins with consciously managing your dependencies – Open Source is a key lever for regaining this control.”

Marcel Scholze,Director Open Source Software Management, PwC Germany
Follow us

Contact us

Marcel Scholze

Marcel Scholze

Director Open Source Software Management, PwC Germany

Tel: +49 151 16157049

Katharina Grauf

Katharina Grauf

Manager Open Source Software Services, PwC Germany

Tel: +49 160 5526026

Thomas  Urband

Thomas Urband

Senior Manager, IP/IT Lawyer, PwC Legal AG, PwC Germany

Tel: +49 160 96273689

Hide