In an age where global connectivity has become pivotal to socio-economic development, satellite communication (SATCOM) systems have become the backbone of modern telecommunication infrastructure. However, the increasing reliance on SATCOM also elevates the potential impact of cyber threats. Cyber risk assessment is a critical component of any satellite communications risk management strategy. It plays a pivotal role in identifying and managing risks to satellite communications, which helps stakeholders isolate the most critical threats and select the appropriate cybersecurity measures. To the best of our knowledge, the field of satellite communications lacks an established framework for cyber risk assessment. Moreover, previous research work has focused only on a limited number of security threats and categories. Therefore, in this paper, we propose a comprehensive risk assessment methodology to qualitatively assess the risk associated with satellite communications cyber threats, following the NIST special publication 800-30: Guide for Conducting Risk Assessments. We analyze existing literature and real-world scenarios to identify potential satellite communications cyber threats and employ the STRIDE threat model for threat modeling. We validate the proposed methodology by performing a risk assessment for the cyber threats identified. Finally, we discuss existing challenges and open research problems for satellite communications cyber risk assessment.
Read full abstract