Jamila Mendoza is a Senior General Counsel specializing in ICT, AI, and space law. She holds a Master of Laws (LL.M.) from the University of Oslo, a specialization in Finance from the University of Geneva, and is an alumna of the European Space Agency’s European Centre for Space Law.
She has held key leadership roles across the space industry, the energy sector, international regulatory and standards bodies, and academia. She has contributed to strengthening Norway’s space ecosystem and pioneering decarbonization initiatives within the energy sector. She has also co authored work with the International Astronautical Federation.
At the United Nations Economic Commission for Europe, she coordinated expert groups on regulatory work with cross border implications. As a former member of the Principles for Responsible Investment (PRI) Taskforce, she advanced investment stewardship across global markets. In addition, as an ISO Committee Expert, she helps shape the global governance framework that guides industry, governments, and international institutions.
At Norgesen Global, she translates complex regulatory landscapes into strategic, decisive action for high stakes sectors where cybersecurity, digital transformation, and the evolution of outer space governance converge.
Outerspace cybersecurity and its regulatory landscape: Shaping the European roadmap towards 2040
As Europe’s reliance on software defined space systems deepens, the cybersecurity of orbital infrastructures has become a defining pillar of continental security, economic resilience, and technological sovereignty. The rapid expansion of dual use constellations, autonomous mission architectures, and space to Earth digital dependencies has exposed a structural vulnerability: Europe’s regulatory frameworks are evolving, but not yet at the pace or coherence required to secure an increasingly contested and interconnected orbital domain. This contribution examines how Europe can shape a forward looking regulatory roadmap for outer space cybersecurity, ensuring resilience and strategic autonomy by 2040.
The paper begins by analysing the current fragmentation across European and international space governance, highlighting gaps in cybersecurity obligations, incident reporting, supply chain assurance, and cross border operational coordination. While some European regulations represent important steps, they remain insufficiently integrated with the realities of software defined space systems, where vulnerabilities propagate across satellites, ground segments, cloud infrastructures, and AI enabled mission control. The absence of harmonised standards for secure by design architectures, in orbit cybersecurity testing, and dual use risk governance further complicates Europe’s ability to deter, detect, and respond to emerging threats.
Ultimately, this contribution argues that outer space cybersecurity must become a central component of Europe’s long term strategic planning. A coherent regulatory roadmap towards 2040 is essential not only to protect orbital infrastructures, but to safeguard Europe’s digital economy, defence capabilities, and geopolitical stability in an era where space has become both an enabler and a battleground of modern security.