SA-8(29) - Security and Privacy Engineering Principles | Repeatable and Documented Procedures

Implement the security design principle of repeatable and documented procedures in [Assignment: organization-defined systems or system components].


ID: SA-8(29)
Enhancement of : SA-8

Space Segment Guidance

Provenance tracking establishes an unbroken chain of custody for every critical artifact, package, and board. Record supplier, inspection date, and digital hash for each library, FPGA bitstream, and operating-system patch in a secure ledger such as a cryptographically signed SBOM. When anomalies occur on orbit, engineers can quickly trace the suspect component back to a specific vendor lot or Git commit, accelerating remediation and informing procurement about systemic weaknesses.