About Sonatype
Transforming How the World Innovates With AI and OSS
Sonatype handles the complexity of managing open source software and AI behind the scenes so teams stay focused on innovation, not maintenance.
Secure Software Innovation at Scale
Open source and AI have revolutionized software delivery — but as adoption scales, so does dependency sprawl, quality issues, and security risks. With unmatched open source visibility and a unified product suite, Sonatype gives enterprises the intelligence and automated governance they need to harness the full potential of open source and AI.
Move Faster. Safer Defaults. Less Rework.
Protecting Developers Around the World
Sonatype protects developers — and their time — by automating policy enforcement, remediation, and artifact workflows so developers can spend more time on innovation and less time on remediation and rework.
Improve Developer Productivity
Give your developers time back to focus on building software, not fixing it.
Reduce Open Source and AI Risk
Gain visibility, block malicious open source, and fix vulnerabilities faster.
Avoid Unexpected Downtime
Ensure faster, more reliable builds with less downtime due to tooling or malware.
RECOGNIZED AS A LEADER IN SECURE SOFTWARE DEVELOPMENT






























Harness the Full Potential of Open Source and AI
Nexus Repository
Centralize open source storage, management, and distribution
Lifecycle
Easily govern and control AI and open source risk across the SDLC
Firewall
Your first line of defense against malicious open source
SBOM Manager
Automate your software compliance and governance at scale

Loved for Secure, Reliable Development
“In using the Sonatype Platform, the PM built a new process that identified security issues and code problems earlier than ever before. Because the tool was reliable and comprehensive, that meant his teams could cut down on the time code needed for security reviews.”
Program Manager
U.S. Department of Energy

“Thanks to Sonatype we have improved the security of software products, in particular the security of Open libraries within a staging logic.”
Adele Gambacorta
Head of Software Production Process

“Sonatype provided the tools and support we needed to streamline due diligence, reduce risk, and move forward with confidence.”
John Goodson
Senior VP of Products

Pioneers of Software Supply Chain Management
As the maintainers of Maven Central and creators of Nexus Repository, Sonatype has spent two decades pioneering how the world manages and secures open source software — making Sonatype the trusted authority for modern software supply chains.
Bhagwat Swaroop
Chief Executive Officer

Bhagwat is a seasoned cybersecurity leader with nearly three decades of experience driving growth, innovation, and large-scale transformations at global high-tech companies. With a track record for strategic expansion and scaling revenue growth, he has extensive experience leading SaaS and cybersecurity businesses in both the public and private sectors, and spearheading multiple transformative M&A transactions. As the CEO of Sonatype, he leads with curiosity, clarity and conviction. He relentlessly pursues co-developing solutions with customers to ensure the highest level of confidence and efficiency when building with open source and AI.
Before joining Sonatype he served as President of Digital Security Solutions of Entrust, where he drove double-digit SaaS ARR growth, and implemented a platform strategy to capitalize on the shift to post-quantum and zero trust. Prior to that, he led a successful business turnaround and orchestrated the acquisition of OneLogin as President and GM of One Identity, and served as EVP and GM at Proofpoint, where he led the email security business and helped the company grow from $250M to more than $1B in ARR in under 5 years. Bhagwat began his career as a developer at Intel before shifting into leadership roles in enterprise software and cybersecurity at companies such as Symantec, NetApp and McKinsey.
Bhagwat is an active speaker with a deep understanding of cybersecurity, AI, open source, enterprise SaaS, and infrastructure software. He holds a BE degree from Delhi Institute of technology, a MS in Electrical Engineering from Arizona State University, and an MBA from the Wharton School at the University of Pennsylvania. He also serves on the Board of Directors for SoSafe, Board Advisor of Silicon Valley Education Foundation, and the Dean’s Advisory Board at Arizona State, School of ECEE.
Bhagwat resides in California along with his family and two energetic Labradoodles.
Brian Fox
Chief Technology Officer

Brian Fox, CTO and co-founder of Sonatype, is a Governing Board Member for the Open Source Security Foundation (OpenSSF), a Governing Board Member for the Fintech Open Source Foundation (FINOS), a member of the Monetary Authority of Singapore Cyber and Technology Resilience Experts (CTREX) Panel, a member of the Apache Software Foundation and former Chair of the Apache Maven project.
Working with OpenSSF, Brian helped create The Open Source Consumption Manifesto, urging organizations to elevate awareness of open source usage. He also chaired efforts to provide official responses to requests for information from the The Office of the National Cybersecurity Directorate (ONCD) and the Cybersecurity and Infrastructure Security Agency (CISA). Within the Atlantic Council’s Open Source Policy Network, Brian actively helps shape cybersecurity strategy, offering valuable insights on critical documents, such as ONCD’s recent National Cyber Security Strategy.
Brian has over 20 years of experience driving the vision behind, as well as developing and leading the development of software for organizations ranging from startups to large enterprises. Brian is a frequent speaker at national and regional events including Java User Groups and other security and development-related conferences.
Dave Miller
Chief Financial Officer

Mitchell Johnson
Chief Product Development Officer

Mitchell Johnson
Chief Product Development Officer
LinkedIn logo for Chief Product Development Officer pageMegan Lueders
Chief Marketing Officer

Megan is a recognized and accomplished community leader and was honored with the Profile in Power Award in 2020. She serves on multiple boards, including Journyx, Lab Alley, UT’s McCombs School of Business MSM Advisory Council and holds leadership positions in her non-profit roles within Texas 4000 and Girlstart. Living in Austin, Texas with her husband and two children, Megan is an alumna of The University of Texas at Austin, McCombs School of Business.
David Rudolph
Chief Customer Officer

Wai Man Yau
SVP Global Sales

Craig Vaughan
Chief Operating Officer

As Chief Operating Officer, Craig is responsible for the management of strategic initiatives pertinent to the Company’s success. Craig collaborates with all departments to understand the impact of their highest priority initiatives and ensures alignment on delivery and continuous execution. Prior to this role he was Sonatype’s VP of Finance where he oversaw the Accounting, Finance and Sales Operations departments. Prior to joining Sonatype, Craig spent the majority of his career in the Baltimore office of PwC. Craig holds a Master’s and Bachelor’s degree from the University of Maryland, College Park
Paul Bosco
General Counsel

As General Counsel, Paul brings over 20 years of legal experience to Sonatype. Prior to Sonatype, Paul was the General Counsel for Spring Mobile Solutions, Inc. where he served as an officer of the multi-national company and managed all of its legal issues. Before joining Spring Mobile, Paul co-founded Mosaic Legal Group, PLLC, a boutique law firm located in Washington D.C. that focuses on corporate, transactional and intellectual property-related issues. Prior to Mosaic, Paul spent 7 years serving as Associate General Counsel and SVP of Legal Services for webMethods, Inc., a publicly traded software company that was acquired by Software AG in 2007. Paul began his legal career as an associate with international law firms Seyfarth Shaw LLP and Kelley Drye & Warren LLP. Paul holds a B.A. in History from Loyola College and graduated magna cum laude from the University of Baltimore School of Law.
E. Wayne Jackson III
Executive Chairman of the Board of Directors

E. Wayne Jackson III
Executive Chairman of the Board of Directors
LinkedIn logo for Executive Chairman of the Board of Directors pageBefore Sourcefire, Wayne co-founded Riverbed Technologies, a wireless infrastructure company, and served as its CEO until the sale of the company for more than $1 billion in March of 2000. Wayne holds a B.B.S in Finance from James Madison University, 1985, and has completed the Executive Education program for Corporate Governance at Harvard University.
The Path to Secure Innovation
- 2025
- 2024
- 2021
- 2019
- 2016
- 2015
- 2013
- 2009
- 2008
- 2006
- 2001
- 1980s
Sonatype unveils industry-first end-to-end AI Software Composition Analysis (SCA) solution, helping organizations adopt secure AI development practices.
Sonatype introduces Sonatype SBOM Manager, the industry’s first enterprise SBOM management solution to help organizations govern their SBOMs.
Sonatype unveils a full-spectrum software supply chain management platform supporting third-party open source code, first-party source code, infrastructure as code (IaC), and containerized code.
A staggering volume and variety of open source libraries began flowing into every development environment in the world, exposing weakness in the software supply chain.
Sonatype humbly begins as a project by core contributors to Apache Maven, a platform for building Java-based projects.
The concept of “open source” emerges as a trend in the development space.
Our Coordinates
Headquarters
Fulton, MD 20759
United States of America
European Office
London E1 6HU
United Kingdom
APAC Office
WeWork, 5 Temasek Blvd
Level 17
Singapore 038985
India Office
HITEC City, Hyderabad Telangana 500081, India
Speak to an Expert

Want to Learn More?
CAREERS
Join the Sonatype Team
NEWS
Explore the Latest News and Insights
EVENTS