CP-2(3) - Contingency Plan | Resume Mission and Business Functions
Plan for the resumption of [Selection: all; essential] mission and business functions within [Assignment: organization-defined time period] of contingency plan activation.
This enhancement directs the program to define time-phased objectives for resuming mission and business functions after a disruptive event. In a spacecraft context, the only practical recovery path is switching to redundant elements or another vehicle in the constellation. The contingency plan should map each primary function, such as attitude control, command reception, and payload data relay, to a maximum tolerable outage and failover mechanism. For example, the loss of an X-band receiver may be bridged by Ku-band if the link margin permits, while the loss of a star tracker may trigger the use of coarse sun sensors within ten minutes to protect thermal limits. Documenting these targets guides flight director decision-making when anomalies and ground-pass delays occur.
The [spacecraft] shall recover from cyber-safe mode to mission operations within 20 minutes.{SV-MA-5}{CP-2(3),CP-2(5),IR-4,SA-8(24)}
Upon conclusion of addressing the threat, the system should be capable of recovering from the minimal survival mode back into a mission-ready state within defined timelines. The intent is to define the timelines and the capability to return back to mission operations.