Space ISAC (Information Sharing and Analysis Center) — Threat Framework
The Space Information Sharing and Analysis Center (Space ISAC), launched in 2019 and operational from 2020, provides threat intelligence, vulnerability coordination, and incident response support for the global space industry. Housed at the National Cybersecurity Center in Colorado Springs. Members include satellite operators, launch providers, ground system operators, and space-related government agencies. The Space ISAC threat framework categorises space-specific cyber and physical threats, provides indicators of compromise (IOCs), and coordinates vulnerability disclosure for space systems. Key focus areas include: ground segment cyber threats, space segment RF/cyber attacks, supply chain integrity, and space weather impacts.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (24)
Asset Management
| Code | Title |
|---|---|
| SISAC-02 | Space Asset Inventory and Classification |
Communications Link Threats
| Code | Title |
|---|---|
| CT-1 | RF Interference and Jamming |
| CT-2 | GNSS Spoofing |
| CT-3 | Signal Interception |
| CT-4 | Uplink and Downlink Manipulation |
Communications Security
| Code | Title |
|---|---|
| SISAC-05 | Command and Telemetry Link Protection |
Coordination
| Code | Title |
|---|---|
| SISAC-16 | Cross Sector and Critical Infrastructure Coordination |
Cryptography
| Code | Title |
|---|---|
| SISAC-17 | Encryption Key Lifecycle for Space Systems |
Detection
| Code | Title |
|---|---|
| SISAC-09 | On-Orbit Anomaly Detection |
Endpoint Security
| Code | Title |
|---|---|
| SISAC-18 | User Terminal and Edge Device Security |
Exercises
| Code | Title |
|---|---|
| SISAC-15 | Tabletop and Red Team Exercises |
Governance
| Code | Title |
|---|---|
| SISAC-01 | Membership and Trusted Community Onboarding |
Governance and Collective Security
| Code | Title |
|---|---|
| GC-1 | Norms of Responsible Behavior |
| GC-2 | Public-Private Information Sharing |
| GC-3 | Cross-Sector Coordination |
| GC-4 | Technology-Agnostic Threat Formats |
Ground Segment Threats
| Code | Title |
|---|---|
| GT-1 | Ground Station Cyber Attacks |
| GT-2 | Physical Security Threats |
| GT-3 | Supply Chain Compromise |
| GT-4 | Social Engineering Attacks |
Incident Response
| Code | Title |
|---|---|
| SISAC-11 | Space System Incident Response |
Information Sharing
| Code | Title |
|---|---|
| SISAC-04 | Indicator and Threat Intelligence Sharing |
| SISAC-12 | Threat Information Production and Quality |
Infrastructure Security
| Code | Title |
|---|---|
| SISAC-06 | Ground Segment Hardening |
Operations
| Code | Title |
|---|---|
| SISAC-19 | Launch Phase Cybersecurity |
Personnel Security
| Code | Title |
|---|---|
| SISAC-13 | Insider Threat Programme |
Programme Management
| Code | Title |
|---|---|
| SISAC-20 | Metrics, Maturity and Continuous Improvement |
Resilience
| Code | Title |
|---|---|
| SISAC-10 | GNSS and Position, Navigation and Timing Resilience |
Software Security
| Code | Title |
|---|---|
| SISAC-08 | Flight Software Assurance |
Space Segment Threats
| Code | Title |
|---|---|
| ST-1 | Satellite Cyber Intrusion |
| ST-2 | On-Orbit Interference |
| ST-3 | Anti-Satellite Weapons |
| ST-4 | Space Debris as Threat |
Supply Chain
| Code | Title |
|---|---|
| SISAC-07 | Supply Chain Risk Management for Space Hardware |
Threat Intelligence
| Code | Title |
|---|---|
| SISAC-03 | Adversary TTP Mapping for Space Systems |
Threat Intelligence Sharing
| Code | Title |
|---|---|
| TI-1 | STIX Framework for Space |
| TI-2 | TAXII Transport Protocol |
| TI-3 | Indicator of Compromise Sharing |
| TI-4 | Threat Correlation and Analysis |
Vulnerability Management
| Code | Title |
|---|---|
| SISAC-14 | Vulnerability Management for Space Systems |
Your Compliance Coverage
If you comply with Space ISAC (Information Sharing and Analysis Center) — Threat Framework, you already cover:
OWASP DevSecOps Maturity Model (DSOMM)
15%
6 controls mapped
Compare →ISO/IEC 27011:2024
10%
4 controls mapped
Compare →ISO 27001:2022
10%
4 controls mapped
Compare →+ 238 more: NIST Cybersecurity Framework 2.0 (8%), FAA Cybersecurity Framework for Aviation (8%)
See all 241 mapped frameworks ↓Maps to 241 other frameworks
Frequently Asked Questions
What is Space ISAC (Information Sharing and Analysis Center) — Threat Framework?
Space ISAC (Information Sharing and Analysis Center) — Threat Framework is a compliance framework from International (Space Industry) with 24 domains and 40 controls. The Space Information Sharing and Analysis Center (Space ISAC), launched in 2019 and operational from 2020, provides threat intelligence, vulnerability coordination, and incident response support for the global space industry. Housed at the National Cybersecurity Center in Colorado Springs. Members include satellite operators, launch providers, ground system operators, and space-related government agencies. The Space ISAC threat framework categorises space-specific cyber and physical threats, provides indicators of compromise (IOCs), and coordinates vulnerability disclosure for space systems. Key focus areas include: ground segment cyber threats, space segment RF/cyber attacks, supply chain integrity, and space weather impacts. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
How many controls does Space ISAC (Information Sharing and Analysis Center) — Threat Framework have?
Space ISAC (Information Sharing and Analysis Center) — Threat Framework has 40 controls organised across 24 domains. The largest domains are Communications Link Threats (4 controls), Governance and Collective Security (4 controls), Ground Segment Threats (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
What frameworks does Space ISAC (Information Sharing and Analysis Center) — Threat Framework map to?
Space ISAC (Information Sharing and Analysis Center) — Threat Framework maps to 241 other compliance frameworks. The top mapping partners are OWASP DevSecOps Maturity Model (DSOMM) (15% coverage), ISO/IEC 27011:2024 (10% coverage), ISO 27001:2022 (10% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I get started with Space ISAC (Information Sharing and Analysis Center) — Threat Framework compliance?
Start your Space ISAC (Information Sharing and Analysis Center) — Threat Framework compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Space ISAC (Information Sharing and Analysis Center) — Threat Framework requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 40 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 700 frameworks.
Get Started Free →Free forever — no credit card required