IR-4(10) - Incident Handling | Supply Chain Coordination

Coordinate incident handling activities involving supply chain events with other organizations involved in the supply chain.


ID: IR-4(10)
Enhancement of : IR-4

Space Segment Guidance

Supply-chain partners can introduce vulnerabilities long before a satellite reaches the pad. This enhancement requires that incident handlers exchange data with material vendors, board fabricators, propulsion providers, transponder networks, and launch services whenever an anomaly might be traced back to compromised parts or tooling. A robust process adds each critical supplier to the program’s cyber call tree, mandates encrypted STIX reports within eight hours of detection, and defines how engineering telemetry, component lot numbers, and tamper-evidence photographs will be shared under existing export-control licenses. Periodic joint drills using a hardware Trojan scenario verify that contacts, secure channels, and escalation paths remain current.