CA-8 - Penetration Testing

Conduct penetration testing [Assignment: organization-defined frequency] on [Assignment: organization-defined systems or system components].


ID: CA-8
Enhancements:  1 | 2 | 3

Space Segment Guidance

Penetration testing in space missions often targets ground enclaves, boundary devices, and protocol implementations exercised via a digital twin rather than the flight article. Scope to meaningful threats (e.g., command injection, parser fuzzing, relay misuse) with controls to prevent unintended RF transmission or unsafe commanding. Align test windows, inject realism (BER, timing jitter, partial uploads), and capture artifacts that operations can action within pass and power/thermal limits.