Writing

Technical essays on security architecture for space systems

We're working on a series of technical essays on the hard problems in space systems security—the ones where standard cloud-grade practice runs into intermittent connectivity, long-lived assets, command authority constraints, and the operational reality of spacecraft. First pieces are in progress; check back soon.

Topics we cover

  • PKI & key management: certificate authorities, rotation, revocation, and root-of-trust design for space-grade systems
  • Secure update & command authority: signed payloads, policy frameworks, and authorization under intermittent connectivity
  • Workload identity & attestation: identity, isolation, and trust establishment for orbital compute and hosted payloads
  • Spacecraft & embedded security: secure boot, firmware integrity, and on-device cryptography for bus and payload systems
  • Industry analysis: incidents, regulatory developments, and trends shaping security expectations across the new-space industry