PM-12 - Insider Threat Program

Implement an insider threat program that includes a cross-discipline insider threat incident handling team.


ID: PM-12
Enhancements: 

Space Segment Guidance

An insider threat program is crucial even for unmanned spacecraft operations, as the most significant risk often emerges from individuals who already possess privileged knowledge about cryptographic keys, firmware, or ground-segment command interfaces. Insider threats may arise from disgruntled employees, supply chain partners, or even well-intentioned personnel unaware that their actions jeopardize sensitive data. A formal program addresses these risks via policies for access control (e.g., the principle of least privilege), strict change management of flight software, and translates those controls into technical implementation onboard the spacecraft. Monitoring anomalous download logs or suspicious sequences of commands—particularly during integration and testing—can expose possible malicious insiders before launch. By instituting a comprehensive insider threat program, organizations can maintain better oversight of critical processes, reduce the likelihood of sabotage, and safeguard mission success despite the inherent complexities of space system design and operation.