Selection note: Curated because “Gateway Implementation of Cybersecurity Requirements” covers Cybersecurity; it materially informs GShips work on gateway cybersecurity.

Evidence boundary: NTRS provides open full text, but this conference paper was screened for curation rather than independently or domain reviewed; inclusion is contextual, not automatic claim evidence.

Stable record
ntrs-20220012369
Topic
cybersecurity
Type
Conference Paper
Publisher
Johnson Space Center
Authors
Svetlana Hanson; E. Rose W. Mustain; Rosa Sosa
Year
2022
Editorial state
metadata curated editorial draft
Reviewer
GShips Project editorial synthesis
Official link checked
2026-07-25

Source-supplied abstract

Cybersecurity threats are a constant present-day reality for any type of business -- Space exploration is not excluded from these threats either. The Gateway Program is one of NASA’s latest initiatives that extend space exploration beyond low earth orbit. Gateway allows for NASA to prove technologies and mature systems necessary to live and work on another celestial body before embarking on multi-year missions to Mars. The Gateway is a small, human-tended space station in orbit around the Moon. With the increased autonomy, distance and criticality of systems, cybersecurity is a critical discipline that touches and integrates with most if not all subsystems of the Gateway. Building a gateway to the lunar orbit is no simple task. In this presentation, we outline an approach that the Gateway team adopted in creating a cyber safe and robust vehicle to support operations and assure protection of the critical functions. Gateway Program is required to implement National Institute of Standards and Technology (NIST) guidelines to adhere to the Federal Information Security Modernization Act (FISMA). NIST provides a framework for managing and controlling cybersecurity risks by defining cybersecurity controls and methodologies for implementation. The NIST framework is based upon the system, data within the system, integrations with external systems, and risk assessments to determine impacts for each of those systems. The goals and objectives are to identify appropriate security controls that fulfil and map to the NIST 800-53 framework. The implementation process involves developing an organizational understanding to manage cybersecurity risk to systems, people, assets, data, and capabilities. NIST Security controls are interpreted and defined within the Gateway vehicle requirements subsystems specifications. This paper details the approach, implementation, and challenges faced during the development and design phases to address cyber threats during the Gateway vehicle operations.

Abstract text has not been adopted as a GShips conclusion.

What would change this record?

A newer or corrected version, a retraction, a verified duplicate, a material topic mismatch, a changed access state, or claim-level review would trigger a dated editorial update.

Open the source record (opens external site in a new tab)

Metadata-curated context; independent domain and claim review pending · Last edited 2026-07-25 · Suggest a correction

Accountability record

How to inspect this page

Scope: Atlas resource ntrs-20220012369

Page citations and accountability links

Assumptions and limits

  • NTRS provides open full text, but this conference paper was screened for curation rather than independently or domain reviewed; inclusion is contextual, not automatic claim evidence.
  • Source-supplied titles, abstracts, authors, and dates may require correction against the canonical full text.

What would change this page?

A newer or corrected version, retraction, verified duplicate, material topic mismatch, changed access state, or claim-level assessment would change this record.

People, review, and conflicts

Prepared by
GShips Project
Editorial status
metadata-curated-editorial-draft
Editorial reviewer
GShips Project editorial synthesis
Last editorial review
No editorial-review date recorded
Independent review
pending
Independent reviewer
No independent reviewer assigned
Last independent review
No independent-review date exists
Last content edit
Not recorded separately
Official source or link verified
2026-07-25

Declared conflicts

  • The maintainer intends to explore a commercial venture based on some GShips work. No entity, outside funding, customer, sponsor, or indexed-organization relationship currently exists.

Suggest a correction to this page