Overview
ISO 20214:2015 - Space data and information transfer systems - Security architecture for space data systems - is a high-level systems-engineering reference that defines a Security Architecture for Space Data Systems (SASDS). Published by ISO and originating from CCSDS (CCSDS 351.0‑M‑1), the standard maps layered security concepts onto the CCSDS Reference Architecture for Space Data Systems (RASDS). ISO 20214:2015 helps engineers and security architects establish a common framework, language, and representation for assessing risks, capturing requirements, and designing secure space data systems.
Key topics and technical requirements
ISO 20214:2015 addresses the following technical topics and high‑level requirements:
- Layered security concepts: promotes protection through multiple, complementary security layers for end‑to‑end mission resilience.
- Security views mapped to RASDS: aligns security considerations with the Enterprise, Connectivity, Functional, Information, and Communications views to help analyze where protections are required.
- Core security disciplines:
- Physical security
- Information security
- Transmission security
- Procedures and mission security documentation
- Security architecture principles:
- Use of open standards
- Expandability and flexibility
- Interoperability
- Fault tolerance
- Key management and lifecycle considerations
- Encryption algorithm selection (following Kerckhoff’s principle)
- Mission profiling: examines typical mission types (human spaceflight, Earth observation, communications, scientific, navigation, multi‑organizational) to tailor security requirements and priorities.
- Proposed architecture elements: requirements, services, the CCSDS Security Core Suite, configuration options, expandability, and emergency operations guidance.
Note: ISO 20214:2015 is primarily a reference/recommended practice - descriptive rather than prescriptive - intended to inform architecture and standards development rather than mandate implementation specifics.
Practical applications and intended users
ISO 20214:2015 is useful to:
- Security architects and systems engineers designing spacecraft, ground segments, and mission data systems
- Satellite operators and mission integrators assessing security risk and mitigation strategies
- Program managers and systems-of-systems architects harmonizing multi‑agency or multi‑vendor missions
- Standards developers and working groups within CCSDS and ISO/TC 20/SC 13 for consistent standards development
- Contractors and vendors implementing security suites, key management, and communications protections
Practical uses include creating a mission security design, selecting appropriate core security subsystems, mapping security requirements to system views, and ensuring interoperability across standards and mission partners.
Related standards and references
- CCSDS Reference Architecture for Space Data Systems (RASDS) - the architecture used by SASDS for view mapping
- CCSDS Recommended Practices (e.g., CCSDS 351.0‑M‑1)
- ISO/TC 20, Subcommittee SC 13 (Space data and information transfer systems)
For implementation details and normative references consult Annex B of ISO 20214:2015 and the CCSDS documentation repository.