MITRE:地方利益共同体在规范对空间网络安全威胁的协调反应中的作用(2024) 14页

VIP文档

ID:71641

大小:0.58 MB

页数:14页

时间:2024-10-25

金币:10

上传者:PASHU
IAC-24-D5.4.11
57th IAA SYMPOSIUM ON SAFETY, QUALITY AND KNOWLEDGE MANAGEMENT IN SPACE
ACTIVITIES
Cybersecurity in space systems, risks and countermeasures
Authors: Mr. Nick Tsamis
The MITRE Corporation, United States, ntsamis@mitre.org
Mr. Harvey Reed
The MITRE Corporation, United States, hreed@mitre.org
Dr. Ruth Stilwell
Aerospace Policy Solutions, LLC, United States, office@aerospacepolicysolutions.com
THE ROLE OF LOCALIZED COMMUNITIES OF INTEREST IN STANDARDIZING COORDINATED
RESPONSES TO SPACE CYBERSECURITY THREATS
Abstract
This paper explores the development of a local communities of interest (COI) cybersecurity standardization
approach for the space domain that focuses on cyber resilience within and across COIs. The authors propose a
paradigm shift from individual responsibility to respond to cybersecurity threats to a collaborative information sharing
based approach to address common cybersecurity needs. This approach examines the space domain through a
“neighborhood norms” (COI-centric agreement to normal behavior), cybersecurity-centric lens.
Here, localized COIs (LCOI) refer to stakeholders unified by common cybersecurity challenges and
objectives across common operations performed within the space environment, e.g., Space Traffic Management
(STM). For example, a community associated with providing Space Situational Awareness (SSA) to support STM
may share intelligence on cyber threats and collaborate on countermeasures specific to SSA operations. This local
COI model may be exportable to other stakeholder groupings with common operational concerns.
This approach aligns with USSF "Partner-to-Win" strategy, emphasizing strategic partnerships for enhanced
cyber defense within the space domain. The COI model fosters a multi-entity approach to space cybersecurity, sharing
the burden of responsibility for threat detection and response. Further, the approach enables optimized, community-
specific solutions ensuring cybersecurity concerns are accounted for and addressed across affected community
participants, ensuring the magnitude of data and number of parties with access are operationally relevant.
The paper will outline how these communities can categorize and align around foundational cybersecurity
challenges, enabling stakeholders with common goals to address shared threats. It will also introduce the role of
decentralized technical capabilities to facilitate the secure information sharing infrastructure necessary to build trust
within and across these communities.
This paper further posits that equipping COIs with decentralized technical capabilities provide a means to
securely manage responses to cybersecurity threats against complex space operations (e.g. STM). This enables COIs
to maintain data and workflow integrity and execute consistent and traceable actions using community-developed
response playbooks.
COIs using this decentralized infrastructure are empowered by efficient information sharing, including
coordinated threat intelligence. This in turn allows for coordinated mitigation of impacts arising from in-progress
cyber-attacks. The decentralized infrastructure facilitates information sharing using a Minimum-Viable Information
(MVI) approach to increase the probability and utility of information being sharing within and across COIs. Sharing
MVI sets allows individual members within localized COIs group to take informed and practical actions to secure
their assets and contribute to the overall resilience of community needs. This coordinated defense approach promotes
new normal behaviors across individual stakeholders in response to cyber incidents, resulting in space domain security
through community vigilance and response.
Keywords: information sharing, cybersecurity, operational playbooks, minimum viable information, community of
interest, security cooperation
©2024 The MITRE Corporation. ALL RIGHTS RESERVED. Approved for public release. Distribution unlimited 23-04226-7.
资源描述:

本文探讨了空间领域地方利益共同体(COI)网络安全标准化方法的发展,该方法侧重于COI内部和跨COI的网络弹性。作者提出了一种范式转变,从应对网络安全威胁的个人责任转变为基于协作信息共享的方法,以满足共同的网络安全需求。这种方法通过“邻里规范”(以COI为中心的正常行为协议)和以网络安全为中心的视角来审视空间领域。

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
关闭