And one of those doesn't appear to be open-source - it's a job working with what appears to be a closed-source static analysis tool for identifying all the open-source code in an enterprise project so that you can guard against the vulnerabilities introduced by open source. Call me a purist, but guarding against open source doesn't sound like an open source job.