<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/xsl" href="static/style.xsl"?><OAI-PMH xmlns="http://www.openarchives.org/OAI/2.0/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/ http://www.openarchives.org/OAI/2.0/OAI-PMH.xsd"><responseDate>2026-09-21T23:29:04Z</responseDate><request verb="GetRecord" identifier="oai:dspace.mit.edu:1721.1/132830" metadataPrefix="dim">https://dspace.mit.edu/server/oai/request</request><GetRecord><record><header><identifier>oai:dspace.mit.edu:1721.1/132830</identifier><datestamp>2025-10-30T17:51:24Z</datestamp><setSpec>com_1721.1_7582</setSpec><setSpec>com_1721.1_7581</setSpec><setSpec>col_1721.1_131023</setSpec></header><metadata><dim:dim xmlns:dim="http://www.dspace.org/xmlns/dspace/dim" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:doc="http://www.lyncode.com/xoai" xsi:schemaLocation="http://www.dspace.org/xmlns/dspace/dim http://www.dspace.org/schema/dim.xsd">
   <dim:field mdschema="dc" element="contributor" qualifier="advisor">Nancy G. Leveson.</dim:field>
   <dim:field mdschema="dc" element="contributor" qualifier="author" lang="en_US">Kharsansky, Alan.</dim:field>
   <dim:field mdschema="dc" element="contributor" qualifier="other" lang="en_US">Massachusetts Institute of Technology. Engineering and Management Program.</dim:field>
   <dim:field mdschema="dc" element="contributor" qualifier="other" lang="en_US">System Design and Management Program.</dim:field>
   <dim:field mdschema="dc" element="contributor" qualifier="department" lang="en_US">Massachusetts Institute of Technology. Engineering and Management Program</dim:field>
   <dim:field mdschema="dc" element="date" qualifier="accessioned">2021-10-08T16:48:52Z</dim:field>
   <dim:field mdschema="dc" element="date" qualifier="available">2021-10-08T16:48:52Z</dim:field>
   <dim:field mdschema="dc" element="date" qualifier="copyright" lang="en_US">2020</dim:field>
   <dim:field mdschema="dc" element="date" qualifier="issued" lang="en_US">2020</dim:field>
   <dim:field mdschema="dc" element="identifier" qualifier="uri">https://hdl.handle.net/1721.1/132830</dim:field>
   <dim:field mdschema="dc" element="identifier" qualifier="oclc" lang="en_US">1262993361</dim:field>
   <dim:field mdschema="dc" element="description" lang="en_US">Thesis: S.M. in Engineering and Management, Massachusetts Institute of Technology, System Design and Management Program, September, 2020</dim:field>
   <dim:field mdschema="dc" element="description" lang="en_US">Cataloged from the official version of thesis.</dim:field>
   <dim:field mdschema="dc" element="description" lang="en_US">Includes bibliographical references (pages 109-113).</dim:field>
   <dim:field mdschema="dc" element="description" qualifier="abstract" lang="en_US">Constellations of hundreds to thousands of satellites are becoming a reality. Nevertheless, the unprecedented scale of these systems is creating new sorts of challenges and risks for the designers and operators, mainly due to the high level of automation required. This study demonstrates how architectural decisions like the constellation topology, type of connectivity, and the level of automation affect the scalability, reliability, and safety of these constellations. A survey of past, current, and planned constellations was conducted to identify key architectural decisions and create representative architectures to analyze using a novel process called Conceptual Architecture Development. These high-level conceptual architectures were refined and analyzed using Systems Theoretic Process Analysis (STPA), and a qualitative assessment and a comparison of the emergent properties were performed. The results suggest that increased automation improves the scalability of the system, mostly when human controllers' responsibilities are shifted from individual satellite management to constellation management. However, increased automation also creates new responsibilities for human controllers and does not necessarily improve the safety and reliability of the system. Human-related causal factors found in lower levels of automation are mostly translated into software-related causal factors in higher levels of automation instead of being eliminated, and new types of hazards arise from the introduction of human-automation interfaces. Moreover, other architectural decisions, such as ground connectivity type, can negatively impact the safety and reliability of the constellation, mostly for slightly automated systems. This study shows that architectural decisions can significantly affect the resulting emergent properties of a system and that there is a tradeoff between automation, safety, and reliability that should not be overlooked. Designers and operators should analyze this tradeoff and the development and operational costs in order to select the best-suited architecture for their constellations based on their expertise, technology strategy, and constellation size.</dim:field>
   <dim:field mdschema="dc" element="description" qualifier="statementofresponsibility" lang="en_US">by Alan Kharsansky.</dim:field>
   <dim:field mdschema="dc" element="description" qualifier="degree" lang="en_US">S.M. in Engineering and Management</dim:field>
   <dim:field mdschema="dc" element="description" qualifier="collection" lang="en_US">S.M.inEngineeringandManagement Massachusetts Institute of Technology, System Design and Management Program</dim:field>
   <dim:field mdschema="dc" element="format" qualifier="extent" lang="en_US">204 pages</dim:field>
   <dim:field mdschema="dc" element="language" qualifier="iso" lang="en_US">eng</dim:field>
   <dim:field mdschema="dc" element="publisher" lang="en_US">Massachusetts Institute of Technology</dim:field>
   <dim:field mdschema="dc" element="rights" lang="en_US">MIT theses may be protected by copyright. Please reuse MIT thesis content according to the MIT Libraries Permissions Policy, which is available through the URL provided.</dim:field>
   <dim:field mdschema="dc" element="rights" qualifier="uri" lang="en_US">http://dspace.mit.edu/handle/1721.1/7582</dim:field>
   <dim:field mdschema="dc" element="subject" lang="en_US">Engineering and Management Program.</dim:field>
   <dim:field mdschema="dc" element="subject" lang="en_US">System Design and Management Program.</dim:field>
   <dim:field mdschema="dc" element="title" lang="en_US">A systemic approach toward scalable, reliable and safe satellite constellations</dim:field>
   <dim:field mdschema="dc" element="type" lang="en_US">Thesis</dim:field>
   <dim:field mdschema="dc" element="format" qualifier="mimetype">application/pdf</dim:field>
   <dim:field mdschema="dspace" element="imported" lang="en_US">2021-10-08T16:48:52Z</dim:field>
   <dim:field mdschema="dspace" element="entity" qualifier="type">Publication</dim:field>
   <dim:field mdschema="mit" element="thesis" qualifier="degree" lang="en_US">Master</dim:field>
   <dim:field mdschema="mit" element="thesis" qualifier="department" lang="en_US">SysDes</dim:field>
   <dim:field mdschema="others" element="access-status">unknown</dim:field>
   <dim:field mdschema="others" element="access-status">unknown</dim:field>
   <dim:field mdschema="cerif" element="openaire" authority="" confidence="-1">&lt;Publication xmlns="https://www.openaire.eu/cerif-profile/1.1/" id="7673fb51-b9ee-4251-8538-fe8225a0eee3">
	&lt;Type xmlns="https://www.openaire.eu/cerif-profile/vocab/COAR_Publication_Types">http://purl.org/coar/resource_type/c_1843&lt;/Type>
	&lt;Language>eng&lt;/Language>
   	&lt;Title>A systemic approach toward scalable, reliable and safe satellite constellations&lt;/Title>
   	&lt;PublishedIn>
    	&lt;Publication>
      	&lt;/Publication>
   	&lt;/PublishedIn>
   	&lt;PublicationDate>2020&lt;/PublicationDate>
   	&lt;Authors>
      	&lt;Author>
        	&lt;DisplayName>Kharsansky, Alan.&lt;/DisplayName>
         	&lt;Affiliation>
         		&lt;OrgUnit>
         		&lt;/OrgUnit>
         	&lt;/Affiliation>
      	&lt;/Author>
	&lt;/Authors>
   	&lt;Editors>
	&lt;/Editors>
    &lt;Publishers>
        &lt;Publisher>
            &lt;DisplayName>Massachusetts Institute of Technology&lt;/DisplayName>
            &lt;OrgUnit />
        &lt;/Publisher>
    &lt;/Publishers>
    &lt;License>http://dspace.mit.edu/handle/1721.1/7582&lt;/License>
    &lt;Keyword>Engineering and Management Program.&lt;/Keyword>
    &lt;Keyword>System Design and Management Program.&lt;/Keyword>
   	&lt;Abstract>Constellations of hundreds to thousands of satellites are becoming a reality. Nevertheless, the unprecedented scale of these systems is creating new sorts of challenges and risks for the designers and operators, mainly due to the high level of automation required. This study demonstrates how architectural decisions like the constellation topology, type of connectivity, and the level of automation affect the scalability, reliability, and safety of these constellations. A survey of past, current, and planned constellations was conducted to identify key architectural decisions and create representative architectures to analyze using a novel process called Conceptual Architecture Development. These high-level conceptual architectures were refined and analyzed using Systems Theoretic Process Analysis (STPA), and a qualitative assessment and a comparison of the emergent properties were performed. The results suggest that increased automation improves the scalability of the system, mostly when human controllers&amp;apos; responsibilities are shifted from individual satellite management to constellation management. However, increased automation also creates new responsibilities for human controllers and does not necessarily improve the safety and reliability of the system. Human-related causal factors found in lower levels of automation are mostly translated into software-related causal factors in higher levels of automation instead of being eliminated, and new types of hazards arise from the introduction of human-automation interfaces. Moreover, other architectural decisions, such as ground connectivity type, can negatively impact the safety and reliability of the constellation, mostly for slightly automated systems. This study shows that architectural decisions can significantly affect the resulting emergent properties of a system and that there is a tradeoff between automation, safety, and reliability that should not be overlooked. Designers and operators should analyze this tradeoff and the development and operational costs in order to select the best-suited architecture for their constellations based on their expertise, technology strategy, and constellation size.&lt;/Abstract>
	&lt;Access xmlns="http://purl.org/coar/access_right" 
    >
    &lt;/Access>
&lt;/Publication>
</dim:field>
</dim:dim>
</metadata></record></GetRecord></OAI-PMH>