CSSSP Exam Prep Free practice test →

Free CSSSP Practice Questions

10 free, exam-style Certified Space Security Specialist Professional (CSSSP) practice questions with answers and explanations. No signup required. Work through them below, then take the full free CSSSP practice test to study every exam domain.

Question 1

An adversary develops the ability to inject authenticated-looking traffic into one element of a satellite's TT&C architecture. Compromise of which element creates the GREATEST risk that the adversary can take direct control of the spacecraft?

  1. The telemetry downlink, which carries the spacecraft's health and status data
  2. The ranging signal used to determine the spacecraft's orbital position
  3. The mission-data downlink from the payload's sensors
  4. The command uplink, which delivers operating instructions to the spacecraft
Show answer & explanation

Correct answer: D - The command uplink, which delivers operating instructions to the spacecraft

Question 2

A security engineer proposes applying the organization's standard enterprise "patch and reboot" incident-response playbook to an operational satellite after a flaw is found in its flight software. Why is this approach fundamentally flawed for an on-orbit asset?

  1. Flight software cannot be exploited from the ground because the link is one-way, so no incident response is required
  2. Government space systems are legally exempt from incident-response requirements
  3. The asset cannot be physically reached or rebuilt, and patch uplinks are bandwidth-limited and contested
  4. The satellite is air-gapped from all networks, so the playbook does not apply
Show answer & explanation

Correct answer: C - The asset cannot be physically reached or rebuilt, and patch uplinks are bandwidth-limited and contested

Question 3

A small satellite loads its FPGA configuration bitstream from external flash memory at every power-on, and a reviewer flags the boot path as high-severity. Which control MOST directly prevents a malicious or altered bitstream from executing?

  1. Verifying a digitally signed bitstream against a hardware root of trust before it executes
  2. Encrypting the satellite's telemetry downlink with a strong cipher such as AES-256
  3. Adding redundant watchdog timers that reset the FPGA whenever a fault is detected
  4. Increasing the radiation shielding around the external flash memory device
Show answer & explanation

Correct answer: A - Verifying a digitally signed bitstream against a hardware root of trust before it executes

Question 4

To cut cost and shorten schedule, a program replaces several radiation-hardened, qualified processors with commercial off-the-shelf (COTS) parts sourced through a multi-tier supplier network. From a security standpoint, which pair of risks does this decision MOST increase?

  1. Higher launch costs and significantly longer payload integration timelines
  2. Increased supply-chain compromise risk and lower tolerance to radiation faults
  3. Excessive growth in the system's size, weight, and power requirements
  4. Loss of confidentiality on the spacecraft's telemetry downlink
Show answer & explanation

Correct answer: B - Increased supply-chain compromise risk and lower tolerance to radiation faults

Question 5

During the Categorize step of the NIST RMF (SP 800-37 Rev. 2) for a satellite command-and-control system, the team rates impact as Confidentiality = Low, Integrity = High, Availability = Moderate. What is the system's overall security categorization?

  1. Low, on the basis that confidentiality is always the dominant concern for space mission data
  2. Moderate, obtained by averaging the three impact ratings
  3. High, applying the high-water-mark, since command integrity is often the driving concern
  4. Undetermined until the Authorize step of the RMF is completed
Show answer & explanation

Correct answer: C - High, applying the high-water-mark, since command integrity is often the driving concern

Question 6

Within the CSSSP body of knowledge, the Cybersecurity Risk Management Construct (CSRMC™) is BEST described as which of the following?

  1. A NIST publication that formally replaces SP 800-37 for federal information systems
  2. A CCSDS protocol that authenticates and encrypts the satellite command uplink
  3. A mandatory DoD accreditation that supersedes the Authorization to Operate
  4. A space-tailored risk-management approach applied alongside NIST RMF concepts
Show answer & explanation

Correct answer: D - A space-tailored risk-management approach applied alongside NIST RMF concepts

Question 7

A satellite has passed all engineering reviews and is declared ready to perform its mission, but the authorizing official has not yet signed off on its residual cybersecurity risk. In RMF terms, what is the system's status?

  1. It has mission acceptance but not an Authorization to Operate (ATO)
  2. It has an Authorization to Operate but has not yet achieved mission acceptance
  3. It has both, because being ready to fly the mission implies security authorization
  4. It has neither, since the two approvals are always granted at the same time
Show answer & explanation

Correct answer: A - It has mission acceptance but not an Authorization to Operate (ATO)

Question 8

An adversary records a valid, properly authenticated command sent to a spacecraft and later retransmits it verbatim, hoping the spacecraft will execute it a second time. Which control MOST directly defeats this specific attack?

  1. Re-encrypting the command channel with a longer cryptographic key
  2. Adding a per-command sequence number so each command is valid only once
  3. Increasing the ground station's transmit power during the command uplink window
  4. Moving the telemetry downlink to a frequency-hopping waveform
Show answer & explanation

Correct answer: B - Adding a per-command sequence number so each command is valid only once

Question 9

Ground receivers begin computing positions that are precisely wrong rather than simply losing the signal, and they report a strong, valid-looking signal the entire time. This pattern is MOST characteristic of which threat?

  1. Spoofing
  2. Jamming
  3. A total ionizing dose (TID) hardware failure
  4. Routine signal fading caused by atmospheric conditions
Show answer & explanation

Correct answer: A - Spoofing

Question 10

Using Tonex's S-APE™ (Space-Attack-Platform-Exploitation) framework, an analyst is cataloging a foreign intelligence service that has both the capability and the intent to target a satellite's ground network. Which S-APE™ category does this element belong to?

  1. Attack Vectors
  2. Threat Agents
  3. Security Weaknesses
  4. Technical Impacts
Show answer & explanation

Correct answer: B - Threat Agents

Ready for the real thing?

Practice hundreds more CSSSP questions with instant scoring, weak-area drills, and full exam simulations.

Start the free practice test See pricing