{"id":56283,"date":"2021-11-19T18:37:14","date_gmt":"2021-11-19T10:37:14","guid":{"rendered":"https:\/\/wp-productionenv-bjg9h2g2bgg5b8aa.southeastasia-01.azurewebsites.net\/news\/dhs-weighs-how-to-protect-increasingly-critical-space-systems\/"},"modified":"2021-11-19T18:37:14","modified_gmt":"2021-11-19T10:37:14","slug":"dhs-weighs-how-to-protect-increasingly-critical-space-systems","status":"publish","type":"post","link":"https:\/\/starpath.global\/news\/dhs-weighs-how-to-protect-increasingly-critical-space-systems\/","title":{"rendered":"DHS Weighs How to Protect Increasingly Critical Space Systems"},"content":{"rendered":"<\/p>\n<p>The <strong>U.S. Department of Homeland Security<\/strong> is deciding how to incorporate space assets like new multi-orbit constellations of broadband communications satellites into its efforts to protect the country\u2019s vital national infrastructure, officials and executives tell <em>Via Satellite<\/em>.<\/p>\n<p>Space capabilities will be a kind of guinea pig for a new approach to DHS\u2019s mission to protect critical infrastructure by working with the private sector companies that own the infrastructure, according to Bob Kolasky, who runs the National Risk Management Center, part of DHS\u2019 Cybersecurity and Infrastructure Security Agency.<\/p>\n<p>Under congressional mandate, he said, DHS will \u201crelatively shortly\u201d lay out \u201ca process by which we\u2019re proposing reviewing and considering the sector structure.\u201d Currently DHS outreach and partnership efforts with vital industries like banks and power companies is organized through 16 designated critical infrastructure sectors, like financial services, energy, and food and agriculture. Last year, in the annual defense policy legislation, Congress told the department to take a good look at that policy framework, which dates back to the Clinton administration, and see if it needs updating.<\/p>\n<p>\u201cCoincidentally,\u201d Kolasky explained, \u201cthat review process will probably be first tested on space.\u201d<\/p>\n<p>Since its establishment in the wake of the 9\/11 terror attacks, DHS has led the mission of hardening the operations of the nation\u2019s key businesses \u2014 the 16 critical infrastructure sectors \u2014 against a range of natural and man-made threats.<\/p>\n<p>Both new space-based systems, like IoT management technology or commercial Earth Observation (EO); and traditional satellite use cases like ubiquitous broadband communications are increasingly vital to a growing list of nationally significant industries \u2014 not to mention their role as commercial service providers to the military.<\/p>\n<p>To address those new risks, Kolasky said, as DHS announced at CyberSat Digital in May, the department has established a Space Systems Critical Infrastructure Working Group consisting of representatives of the 13 federal agencies with space-related responsibilities; multiple businesses that own and operate space-related infrastructure, including launch and ground control systems; and other interested parties like academic associations, trade organizations, and federally-funded research centers.<\/p>\n<p>Under special post-9\/11 rules for critical infrastructure protection, the working group\u2019s deliberations are not open to the public, as is generally mandatory for other kinds of panels and commissions that give a government advisory role to commercial interests. The working group\u2019s membership list, for example, has never been published. It was released to <em>Via Satellite<\/em> by Kolasky and is &nbsp;It includes government agencies like the <strong>FCC<\/strong> and <strong>NASA<\/strong>, companies including <strong>Hughes Network Systems<\/strong> and <strong>Redwire<\/strong>, and organizations like <strong>American Institute of Aeronautics and Astronautics<\/strong>.<\/p>\n<p>The working group was set up, Kolasky said, \u201cto think through the question of how we treat space as critical infrastructure, [to figure out] where are the key risks that need national security attention, and to make sure that we had robust public private partnership between government and space infrastructure for the purposes of critical infrastructure security and resilience.\u201d<\/p>\n<\/p>\n<figure id=\"attachment_336864\" aria-describedby=\"caption-attachment-336864\" style=\"width: 800px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"size-large wp-image-336864\" src=\"https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM-800x596.png\" alt=\"\" width=\"800\" height=\"596\" srcset=\"https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM-800x596.png 800w, https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM-300x224.png 300w, https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM-268x200.png 268w, https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM-895x667.png 895w, https:\/\/www.satellitetoday.com\/wp-content\/uploads\/2021\/11\/Screen-Shot-2021-11-19-at-1.15.23-PM.png 1229w\" sizes=\"(max-width: 800px) 100vw, 800px\"><figcaption id=\"caption-attachment-336864\" class=\"wp-caption-text\">The DHS Space Systems Critical Infrastructure Working Group membership list.<\/figcaption><\/figure>\n<\/p>\n<h3><strong>To Designate or Not?<\/strong><\/h3>\n<p>The space industry is not designated as an official critical infrastructure sector, but many in the industry have called for this to change. For more than two years, the <strong>Space Information Sharing and Analysis Center <\/strong>has been campaigning for space to be designated as the 17th sector. Space-ISAC is a non-profit set up to ensure that information about cyber and other security threats is shared among competing owners and operators of space-related systems.<\/p>\n<p>The DHS working group only proves the need for the designation of space, said Space-ISAC Executive Director Erin Miller, who is a member of the working group.<\/p>\n<p>\u201cWe\u2019re regularly engaging on topics that are not being addressed in any other forum,\u201d she said.&nbsp; \u201cSo that in and of itself proves out the model that this [risk to space-related infrastructure] is not being addressed by the other critical infrastructure sectors.\u201d<\/p>\n<p>\u201cWe need a single forum to address the management of risk to the space sector,\u201d she concluded.<\/p>\n<p>This month, that campaign got support from the <strong>Intelligence and National Security Alliance<\/strong>, a trade association that represents contractors selling to the U.S. intelligence community.<\/p>\n<p>The Nov. 15 Russian test of an Anti-Satellite (ASAT) weapon demonstrates the very real threat adversaries can pose to U.S. space systems, noted Larry Hanauer, INSA vice president for policy.<\/p>\n<p>\u201cDesignating space as a critical infrastructure sector would be good for the security and resiliency of space assets in a number of ways, but the principal advantage would be to enhance information sharing between private sector space companies and government organizations. So everyone in both government and industry can better understand and mitigate both physical and cyber threats,\u201d he said.<\/p>\n<p>So far, the Biden administration seems to have set its face against adding space as a 17th sector.<\/p>\n<p>\u201cThere may be [industries] where you don\u2019t need a sector designation&nbsp;\u2014 and this could be where we end up with space \u2014 you just need constant attention to understand the risks and make sure that the players who are the big drivers are mitigating those risks; that information sharing arrangements are in place; and that communications channels are open, and we are having regular dialogues,\u201d said Kolasky.<\/p>\n<p>He said all of those activities are being done by the working group. And he noted that many existing sectors are aware of their reliance on space-based capabilities \u2014 \u201cThe communication sector, the transportation sector, the defense industrial base, [and] critical manufacturing \u2026 There are many elements of space infrastructure that are accounted for in the existing sector structure,\u201d he said.<\/p>\n<p>The working group\u2019s activities are still at a preliminary stage, explained co-chair John Galer, assistant vice president for national security space at the <strong>Aerospace Industries Association<\/strong>.<\/p>\n<p>\u201cWe are still trying to figure out what our outputs look like,\u201d he said, \u201cAnd I would say we\u2019re not 100 percent settled on that.\u201d<\/p>\n<p>He noted that it is important \u201cto make sure that we are not duplicating any effort, but going after the areas where we can make a real impact. You cannot solve every problem. And so, we\u2019ve got to really put the focus \u2026 on ideas that we think would bring some real goodness,\u201d he said.<\/p>\n<h3><strong>A New Approach<\/strong><\/h3>\n<p>In any case, the question of whether space should become the 17th sector or not may be overtaken by changes in the department\u2019s approach to its critical infrastructure protection mission, according to public comments by DHS and White House officials.<\/p>\n<p>Officials like Chris Inglis, the national cyber director in the Biden White House see the sector-based approach as too stovepiped. A sector-based approach \u201cleads us to a false conclusion,\u201d he told CyberSatGov in October \u2014 the idea that each sector could be defended separately from the others. It was an illusion to think \u201cthat we can get one of those right in the absence of [getting] the other 15 right,\u201d he said.<\/p>\n<p>He pointed out that the most important risks, like extreme weather events or mass-effect terror attacks, for example, almost always impact multiple critical infrastructure sectors. And failures in one sector \u2014 energy and banking most obviously \u2014 can set off a cascade of failures across multiple sectors.<\/p>\n<p>Inglis advocates for a more functions-based approach to critical infrastructure. Providing health care or financial services for instance, requires an interlocking grid of service providers across multiple sectors.<\/p>\n<p>Kolasky said that assessing cross sector risk to critical functions \u2014 and looking at criticality as the point where multiple cross-sector risks collide \u2014 is a more useful approach. \u201cWe operated for a long time, on the understanding that entities were responsible to assess and manage the risk to their own operations. And that collectively, with that happening, we would address the [bigger systemic] risks.\u201d<\/p>\n<p>But in reality, no matter how good a hospital\u2019s incident response plans are, if it is cut off from water, or internet connectivity or power, it will fail sooner or later.<\/p>\n<p>A functions-based approach, \u201cprovides a better organization to work together to assess and manage risk to critical services,\u201d said Kolasky.<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The U.S. Department of Homeland Security is deciding how to incorporate space assets like new multi-orbit constellations of broadband communications satellites into its efforts to protect the country\u2019s vital national infrastructure, officials and executives tell Via Satellite. Space capabilities will be a kind of guinea pig for a new approach to DHS\u2019s mission to protect [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":47657,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[2],"tags":[],"class_list":["post-56283","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"acf":[],"_links":{"self":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts\/56283"}],"collection":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/comments?post=56283"}],"version-history":[{"count":0,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts\/56283\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/media\/47657"}],"wp:attachment":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/media?parent=56283"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/categories?post=56283"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/tags?post=56283"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}