October 1, 2025: Due to the lapse in federal government funding, NASA is not updating this website. We sincerely regret this inconvenience.
NPR 7150.2 Revision D was approved March 8, 2022. The SEPG is working towards approval of LPR 7150.2D that conforms with NPR 7150.2D. In February 2025, the LMS Directives Office reissued LPR 7150.2B as LPR 7150.2C without changes. Until LPR 7150.2D is approved, the content on this site will continue to reflect a mix of NPR 7150.2D and LPR 7150.2B/C. However, changes in NPR 7150.2D take precedence over LPR 7150.2B/C, and projects are expected to comply with NPR 7150.2D. (Status update as of 9/30/2025)
-LaRC’s SEPG Representative for Contracts: Michael Madden
Center Software Assurance Manager: Gugu Rutherford
Per LPR 7150.2, the Center Software Assurance Manager performs independent assessment of the NPR 7150.2 software class and NASA-STD-8739.8 safety-critical determination for all engineering software (Class A through Class E). The Center Software Assurance Manager also performs software assurance on all Requirements Mapping Matrices. LPR 7150.2 requires projects to contact the Center Software Assurance Manager for the independent assessment of software class and safety-critical determination and for review and concurrence of Requirements Mapping Matrices (formerly called Compliance Matrices).
Center CIO Tailoring Authority: John Mullane
The LaRC Chief Information Officer designates the Center CIO Tailoring Authority who is responsible for reviewing and approving the tailoring of cybersecurity requirements in NPR 7150.2. Any Requirements Mapping Matrix (formerly called a Compliance Matrix) that tailors the cybersecurity requirements must be reviewed and signed by the Center CIO Tailoring Authority